Fidelity reports data breach exposing 77,000 customers' personal data

Fidelity reports data breach exposing 77,000 customers' personal data
The investment giant said Social Security numbers, driver's licenses, and other sensitive information was compromised by a third party using newly established accounts.
OCT 10, 2024

Fidelity Investments has confirmed a significant data breach affecting tens of thousands of its customers, exposing sensitive personal information, including Social Security numbers and driver’s licenses.

The breach, which occurred in August, was disclosed in regulatory filings with the attorney generals of Maine, New Hampshire, and Massachusetts.

According to its filing submitted to Maine’s attorney general on Wednesday, Fidelity stated that the breach took place between August 17 and August 19, when an unnamed third party gained access to the data through two customer accounts.

It remains unclear how an external actor could have gained access to its broad database of customer information by setting up user accounts.

“We detected this activity on August 19 and immediately took steps to terminate the access,” Fidelity said in a letter giving notice to its impacted customers. The firm emphasized that no Fidelity customer accounts were accessed as part of the incident.

The Boston-based investment giant completed its investigation and confirmed that personal information was compromised, impacting 77,099 individuals.

A separate data breach notice filed with New Hampshire’s attorney general revealed that the attackers “accessed and retrieved certain documents” related to customers through fraudulent requests to an internal database. This database contained images of various documents tied to Fidelity customers and other individuals.

Meanwhile, a data breach report maintained by the government of Massachussets shows Fidelity reporting an incident that impacted 2,768 residents of the state, which compromised Social Security Numbers, financial accounts and drivers licenses.

As of Thursday afternoon, the company's website had not made any public declarations about the incident. The firm has not provided specific information on whether any of the stolen data has been misused.

Separately, Fidelity recently announced it would restrict third parties' access to retirement accounts via credential sharing, particularly fintech firms that use it to access, manage, and trade within their clients' employer-sponsored retirement accounts.

Fidelity, one of the largest asset managers globally, serves over 51 million individual investors and manages approximately $14.1 trillion in customer assets as of June 2024. It remains unclear whether the company plans to release additional details or updates on this breach.

 

Latest News

RIA moves: True North adds $353M California RIA as SageView grows North Carolina presence
RIA moves: True North adds $353M California RIA as SageView grows North Carolina presence

Plus, a $400 million Commonwealth team departs to launch an independent family-run RIA in the East Bay area.

Blue Owl Capital, Voya strike private market partnership for retirement plans
Blue Owl Capital, Voya strike private market partnership for retirement plans

The collaboration will focus initially on strategies within collective investment trusts in DC plans, with plans to expand to other retirement-focused private investment solutions.

Top Commonwealth advisor to recruiters: Stop with the cold calls already!
Top Commonwealth advisor to recruiters: Stop with the cold calls already!

“I respectfully request that all recruiters for other BDs discontinue their efforts to contact me," writes Thomas Bartholomew.

Why AI notetakers alone can't fix 'broken' advisor meetings
Why AI notetakers alone can't fix 'broken' advisor meetings

Wealth tech veteran Aaron Klein speaks out against the "misery" of client meetings, why advisors' communication skills don't always help, and AI's potential to make bad meetings "100 times better."

Morgan Stanley, Goldman, Wells Fargo to settle Archegos trades lawsuit
Morgan Stanley, Goldman, Wells Fargo to settle Archegos trades lawsuit

The proposed $120 million settlement would close the book on a legal challenge alleging the Wall Street banks failed to disclose crucial conflicts of interest to investors.

SPONSORED How advisors can build for high-net-worth complexity

Orion's Tom Wilson on delivering coordinated, high-touch service in a world where returns alone no longer set you apart.

SPONSORED RILAs bring stability, growth during volatile markets

Barely a decade old, registered index-linked annuities have quickly surged in popularity, thanks to their unique blend of protection and growth potential—an appealing option for investors looking to chart a steadier course through today's choppy market waters, says Myles Lambert, Brighthouse Financial.