Jack Henry ransomware attack hits data at just 10 of 7,200 banks

NewsTue, 01 Sep 2026 23:57:26 UTC2 hours ago
Jack Henry ransomware attack hits data at just 10 of 7,200 banks

Jack Henry, one of the largest core banking technology providers in the United States, has confirmed it was hit by a ransomware attack that involved tricking employees through voice phishing rather than exploiting a software flaw. The Jack Henry ransomware attack traces back to a scheme in which attackers posed as trusted contacts to gain access to the company’s internal corporate environment, according to a statement from the vendor.

Key takeaways

  • Jack Henry was breached through a voice phishing scheme linked to the hacking group ShinyHunters, active since 2019.
  • No client-facing systems, core banking platforms, or daily processing services were accessed or disrupted.
  • Personally identifiable data was extracted from just 10 of Jack Henry’s 7,200 client banks.
  • Jack Henry is offering two years of credit monitoring to impacted financial institutions for their accountholders.
  • The company says it made no payment to the attackers and considers the incident not financially material.

Ransomware Attack Targeting Jack Henry

The breach began with a social engineering voice phishing scheme, a tactic where attackers call employees and impersonate colleagues, IT staff, or trusted vendors to convince them to hand over access credentials. Jack Henry says this method allowed intruders to reach its internal corporate systems, marking the entry point for the broader incident now under investigation.

… Continue reading the full article at the original source below.

Read from Source · en.cryptonomist.ch ↗
This content is automatically aggregated. Full credit goes to the original publisher (en.cryptonomist.ch).

Related