Fintech giant Finastra investigates data breach after SFTP hack

Share:

Finastra has confirmed it warned customers of a cybersecurity incident after a threat actor began selling allegedly stolen data on a hacking forum.

Finastra is a financial software company serving over 8,000 institutions across 130 countries, including 45 of the world’s top 50 banks and credit unions. The company employs 12,000 people, and last year, it reported a revenue of $1.7 billion.

The security incident occurred on November 7, 2024, when an attacker used compromised credentials to access one of Finastra’s Secure File Transfer Platform (SFTP) systems.

The firm says that its investigation so far, which is aided by external cybersecurity experts, shows no evidence that the breach extended beyond its SFTP platform.

The firm’s software services include lending solutions, payment processing, cloud-enabled retail and banking platforms, and trading risk management tools.

Brian Krebs first reported that Finastra suffered a security breach yesterday after seeing a data breach notification sent to an impacted person.

The attack is believed to be linked to a recent post on a hacking forum, where a threat actor named “abyss0” claimed to be selling 400GB of data stolen from Finastra.

KELA
Source: KELA

When asked about the forum post, a Finastra spokesperson would neither confirm nor deny if the data belonged to them, only telling BleepingComputer that they had suffered a limited-scope security breach and are currently evaluating its impact.

“On November 7, 2024 Finastra’s Security Operations Center (SOC) detected suspicious activity related to an internally hosted Secure File Transfer Platform (SFTP) we use to send files to certain customers,” Finastra told BleepingComputer.

“We immediately launched an investigation alongside of a third-party cybersecurity firm and, as a precautionary step, isolated and contained the platform. This incident was limited to the one platform and there was no lateral movement beyond it.”

The company also clarified that the compromised SFTP platform was not used by all its customers, nor was it the default platform used by Finastra for file exchange.

However, the exact impact and scope of its breach are still being investigated, and determining who is impacted may take a while until it’s completed.

Those who are deemed impacted will be contacted directly, so public disclosures from Finastra are not expected.

It’s worth noting that the threat actor who published the data samples earlier this month has since deleted the post, so whether the data was sold to a buyer or ‘abyss0’ became concerned by the sudden publicity is unknown.

In March 2020, Finastra suffered another major cybersecurity incident when it got hit by ransomware actors.

Back then, the fintech company was forced to take parts of its IT infrastructure offline in response to the threat, which caused service disruptions.

Though the means of initial access was unknown, reports from threat monitoring platforms highlighted the firm’s lackluster vulnerability management strategy, noting that it was using older versions of Pulse Secure VPN and Citrix servers.

Bill Toulas

Leave a Comment

Your email address will not be published. Required fields are marked *

loader-image
London, GB
12:47 pm, Jul 4, 2025
weather icon 24°C
L: 23° | H: 26°
overcast clouds
Humidity: 41 %
Pressure: 1026 mb
Wind: 9 mph WSW
Wind Gust: 0 mph
UV Index: 0
Precipitation: 0 mm
Clouds: 89%
Rain Chance: 0%
Visibility: 10 km
Sunrise: 4:49 am
Sunset: 9:19 pm
DailyHourly
Daily ForecastHourly Forecast
Today 10:00 pm
weather icon
23° | 26°°C 0 mm 0% 13 mph 42 % 1026 mb 0 mm/h
Tomorrow 10:00 pm
weather icon
14° | 19°°C 0.97 mm 97% 13 mph 90 % 1021 mb 0 mm/h
Sun Jul 06 10:00 pm
weather icon
16° | 20°°C 1 mm 100% 10 mph 89 % 1010 mb 0 mm/h
Mon Jul 07 10:00 pm
weather icon
14° | 23°°C 1 mm 100% 13 mph 77 % 1016 mb 0 mm/h
Tue Jul 08 10:00 pm
weather icon
13° | 25°°C 0 mm 0% 9 mph 77 % 1020 mb 0 mm/h
Today 1:00 pm
weather icon
24° | 24°°C 0 mm 0% 9 mph 42 % 1026 mb 0 mm/h
Today 4:00 pm
weather icon
24° | 25°°C 0 mm 0% 12 mph 37 % 1025 mb 0 mm/h
Today 7:00 pm
weather icon
23° | 23°°C 0 mm 0% 13 mph 31 % 1023 mb 0 mm/h
Today 10:00 pm
weather icon
20° | 20°°C 0 mm 0% 10 mph 40 % 1022 mb 0 mm/h
Tomorrow 1:00 am
weather icon
19° | 19°°C 0 mm 0% 10 mph 50 % 1021 mb 0 mm/h
Tomorrow 4:00 am
weather icon
17° | 17°°C 0 mm 0% 10 mph 52 % 1019 mb 0 mm/h
Tomorrow 7:00 am
weather icon
14° | 14°°C 0.97 mm 97% 9 mph 90 % 1018 mb 0 mm/h
Tomorrow 10:00 am
weather icon
17° | 17°°C 0.7 mm 70% 10 mph 82 % 1017 mb 0 mm/h
Name Price24H (%)
Bitcoin(BTC)
€92,668.34
-0.56%
Ethereum(ETH)
€2,169.87
-1.49%
Tether(USDT)
€0.85
0.00%
XRP(XRP)
€1.90
-2.56%
Solana(SOL)
€127.90
-2.58%
USDC(USDC)
€0.85
0.00%
Dogecoin(DOGE)
€0.141759
-3.79%
Shiba Inu(SHIB)
€0.000010
-2.90%
Pepe(PEPE)
€0.000008
-5.78%
Scroll to Top