Financial Business and Consumer Solutions (FBCS) is warning 1,955,385 affected individuals in the United States that the company has suffered a data breach after discovering unauthorized access to certain systems on its network.
See also: Prudential Financial notifies 36,000 people of data breach

FBCS is a nationally licensed debt collection company in the U.S., specializing in collecting unpaid debts from healthcare, commercial auto loans and leases, student loans, and utilities.
According to a data breach notification that FBCS shared with authorities late last week, on February 26, 2024, it discovered that unauthorized actors had breached its network since February 14, 2024.
Data that attackers could access during the exposure period includes :
- Full name
- Social Security Number (SSN)
- Dates of birth
- Account information
- Driver's license number or ID card
See also: France Travail: Data breach affects 43 million people
This information increases the risk of exposing individuals to phishing, fraud and social engineering. To mitigate this scenario, FBCS is attaching instructions for recipients of the notice regarding their registration for 12 months of credit monitoring through Cyex.

FBCS says it has implemented additional security measures in a newly built environment to prevent future breach incidents.
Recipients of data breach notifications are advised to remain vigilant against unsolicited communications and monitor their account statements and credit reports for suspicious activity.
So far, no ransomware group has claimed responsibility for the attack on FBCS.
See also: HPE: Investigating allegations of new data breach
How can companies protect their data from being breached?
Companies can protect their data from a breach, as in the case of FBCS, in a number of ways. First, it is important to implement strong information security policies, which include regularly informing and training their staff about security risks and best practices. Second, companies should use encryption technologies to protect their data, especially when it is in transit or stored. Third, companies should implement identity and access management procedures, which means that only authorized individuals have access to the data. Finally, companies should have an effective response plan in place in the event of a security breach, which includes responding immediately, communicating with those involved, and taking action to restore security.
Source: bleepingcomputer
🔒 Protect your privacy with Proton VPN
Swiss VPN from the creators of Proton Mail — strict no-logs policy, strong encryption, and built-in NetShield that blocks ads, trackers, & malware.
- ✔ No-logs, based in Switzerland (except 14-Eyes)
- ✔ NetShield: blocks ads, trackers & malicious domains
- ✔ Covers all devices — free version available
The link is an affiliate link — SecNews may receive a commission at no additional cost to you. It does not affect the independence of our article writing.
