The Italian bank UniCredit announced today that around three million of its Italian clients have been affected by a data breach that took place in 2015,
“The UniCredit cyber security team has identified a data incident involving a file generated in 2015 containing a defined set of approximately 3 million records limited to the Italian perimeter,” read a statement issued by the bank.” “The records consist of names, city, telephone number and email only.
The bank reported the incident to the authorities and launched an internal investigation.
“Italy’s biggest lender by assets said no bank details which would permit access to customer accounts or allow for unauthorized transactions had been compromised.” reported the Reuters.
“UniCredit immediately launched an internal investigation and has informed all the relevant authorities, including the police.” continues the statement
“The bank is contacting all potentially affected persons exclusively by post and-or online banking notifications. For any concerns, customers can contact the UniCredit customer services’ team or call toll free 800 323285”.
The bank announced to have invested additional funds to implements additional security measures and protect its systems.
“Since 2016, UniCredit has invested an additional 2.4 billion euros in upgrading and strengthening its IT systems and cyber security,” the bank said.
This is the last security incidet suffered by the bank in order of time, in July 2017 Unicredit disclosed two separate security breaches that exposed client data in September and October 2016, more than 400,000 Italian customers were impacted.
The attacks were carried out via an external commercial partner which UniCredit did not identify, the bank said at that time.
At the time, data of 400,000 loan applicants were exposed due to the hack of a partner.
Necessary cookies are absolutely essential for the website to function properly. This category only includes cookies that ensures basic functionalities and security features of the website. These cookies do not store any personal information.
Any cookies that may not be particularly necessary for the website to function and is used specifically to collect user personal data via analytics, ads, other embedded contents are termed as non-necessary cookies. It is mandatory to procure user consent prior to running these cookies on your website.