Aflac Cybersecurity Incident: 22.6 Million Personal Data Stolen

Aflac data breach cybersecurity incident personal information stolen insurance industry cyberattacks data protection
Edward Zhou
Edward Zhou

CEO & Co-Founder

 
December 24, 2025
2 min read
Aflac Cybersecurity Incident: 22.6 Million Personal Data Stolen

TL;DR

  • Aflac experienced a major cybersecurity incident in June 2025, compromising the personal and sensitive data of 22.65 million individuals. The stolen information includes names, dates of birth, addresses, government IDs, Social Security numbers, and medical details. This breach is part of a broader trend targeting the insurance industry, prompting Aflac to offer credit monitoring and identity theft protection services to affected customers.

Aflac Data Breach Impacts 22.65 Million Individuals

Aflac, the insurance company, has announced that a cybersecurity incident in June 2025 affected the personal information of approximately 22.65 million individuals. The company disclosed the incident and has begun notifying those affected. More information is available on Aflac's website.

Details of the Breach

The stolen data includes:

  • Customer names
  • Dates of birth
  • Home addresses
  • Government-issued ID numbers (e.g., passports, state ID cards, driver’s licenses)
  • Social Security numbers
  • Medical and health insurance information

Aflac's filing with the Iowa attorney general indicates that the cybercriminals may be affiliated with a known cyber-criminal organization that has been targeting the insurance industry.

Aflac's Response

Following the detection of the breach, Aflac secured potentially impacted accounts, reset passwords, and increased monitoring for suspicious activity. Aflac's press release states that the company is not aware of any fraudulent use of personal information to date and will continue to monitor for such activity with third-party partners. The company also provided customers with credit monitoring, identity theft protection, and medical fraud protection. Further details can be found in their update.

Cybercrime Targeting Insurance Industry

Aflac noted that this attack was part of a broader cybercrime campaign against the insurance industry. Other insurance companies, such as Erie Insurance and Philadelphia Insurance Companies, have also experienced data breaches around the same time. The FBI's Internet Crime Complaint Center (IC3) has reported that personal data breaches are among the top cybercrimes. The IC3's "Internet Crime Report 2024" highlights that data breaches are a significant threat to critical infrastructure organizations.

Gopher Security's AI-Powered Zero-Trust Architecture

In light of increasing cyber threats, Gopher Security specializes in providing advanced cybersecurity solutions. Our AI-powered, post-quantum Zero-Trust architecture is designed to protect organizations from sophisticated cyberattacks. The platform converges networking and security across devices, apps, and environments, utilizing peer-to-peer encrypted tunnels and quantum-resistant cryptography. This ensures robust protection for endpoints, private networks, cloud environments, remote access, and containers.

Enhance Your Cybersecurity Posture: Contact Gopher Security

Protect your organization with Gopher Security's advanced cybersecurity solutions. Explore our offerings and contact us today to learn how our AI-powered, Zero-Trust architecture can safeguard your data and infrastructure. Visit https://gopher.security for more information.

Edward Zhou
Edward Zhou

CEO & Co-Founder

 

CEO & Co-Founder of Gopher Security, leading the development of Post-Quantum cybersecurity technologies and solutions.

Related News

Cato Networks Achieves 45-Minute Vulnerability Mitigation Benchmark for Cloud Security Platforms
Cato Networks

Cato Networks Achieves 45-Minute Vulnerability Mitigation Benchmark for Cloud Security Platforms

Cato Networks sets a new cloud security benchmark, using agentic AI to slash vulnerability response times from weeks to just 45 minutes. See how it works.

By Brandon Woo June 5, 2026 3 min read
common.read_full_article
Microchip Achieves 20–60x Energy Efficiency Gains for Post-Quantum Cryptographic Hardware Implementations
post-quantum cryptography

Microchip Achieves 20–60x Energy Efficiency Gains for Post-Quantum Cryptographic Hardware Implementations

New ASIC architecture enables energy-efficient post-quantum cryptography for medical devices, solving the power-security trade-off for 2026 security standards.

By Brandon Woo June 5, 2026 4 min read
common.read_full_article
EU AI Act Implementation Mandates New Security Standards for Cloud-Native Supply Chain Integrity
EU AI Act compliance

EU AI Act Implementation Mandates New Security Standards for Cloud-Native Supply Chain Integrity

Understand EU AI Act mandates for cloud-native supply chain security. Learn deadlines, risk categories, and compliance requirements for high-risk AI systems.

By Edward Zhou June 5, 2026 4 min read
common.read_full_article
Blancco Report Reveals Rising Enterprise Spending on Data Protection Amid Growing Cybersecurity Anxiety
enterprise cybersecurity anxiety

Blancco Report Reveals Rising Enterprise Spending on Data Protection Amid Growing Cybersecurity Anxiety

Blancco report reveals how enterprise cybersecurity anxiety leads to wasteful hardware destruction and increased data security risks. Learn about the sanitization paradox.

By Alan V Gutnov June 5, 2026 4 min read
common.read_full_article