/

Progressive Data Breach: What & How It Happened?

Progressive Data Breach: What & How It Happened?

Twingate Team

Jun 14, 2024

In May 2023, Progressive Casualty Insurance experienced a data breach that was publicly announced in August 2023. The breach involved unauthorized individuals gaining access to consumers' Personally Identifiable Information (PII) through improperly shared access credentials by some of Progressive's third-party vendors. A class-action lawsuit was filed against Progressive, alleging negligence in securing and safeguarding personal data from hackers.

How many accounts were compromised?

The breach impacted data related to approximately 347,000 individuals.

What data was leaked?

The data exposed in the breach included names, addresses, driver's license numbers, email addresses, phone numbers, Social Security Numbers, dates of birth, bank routing numbers, and checking account numbers.

How was Progressive hacked?

Unauthorized individuals gained access to Progressive Casualty Insurance's consumer data by exploiting improperly shared access credentials from third-party vendors. The specifics of the infiltration method remain unclear.

Progressive's solution

In response to the hack, Progressive Casualty Insurance's specific security measures remain unclear. However, the company did plan to offer credit monitoring and identity protection services to the affected customers. While the exact steps taken to secure their platform and prevent future incidents are not detailed, it is likely that Progressive worked to address the vulnerabilities that led to the breach and strengthen their overall security posture.

How do I know if I was affected?

It is not explicitly mentioned whether Progressive reached out to affected users. However, if you are a Progressive customer and haven't received a notification, you may visit Have I Been Pwned to check your credentials.

What should affected users do?

In general, affected users should:

  • Change Your Passwords: Immediately update your passwords for all affected accounts. Make sure the new passwords are strong and unique, not previously used on any other platform.

  • Reset Passwords for Other Accounts: If you've used the same or similar passwords for other online accounts, reset those as well. This is crucial as attackers often try using stolen passwords on multiple sites.

  • Enable Two-Factor Authentication (2FA): Activate 2FA on all affected accounts. Consider enabling this additional security feature on all other important online accounts to significantly reduce the risk of unauthorized access.

  • Monitor Your Accounts: Keep an eye on your accounts for any suspicious activity. If you notice anything unusual, report it to the appropriate authorities and financial institutions.

For more specific help and instructions regarding Progressive's data breach, please contact Progressive's support directly.

Where can I go to learn more?

If you want to find more information on the Progressive data breach, check out the following news articles:

Rapidly implement a modern Zero Trust network that is more secure and maintainable than VPNs.

/

Progressive Data Breach: What & How It Happened?

Progressive Data Breach: What & How It Happened?

Twingate Team

Jun 14, 2024

In May 2023, Progressive Casualty Insurance experienced a data breach that was publicly announced in August 2023. The breach involved unauthorized individuals gaining access to consumers' Personally Identifiable Information (PII) through improperly shared access credentials by some of Progressive's third-party vendors. A class-action lawsuit was filed against Progressive, alleging negligence in securing and safeguarding personal data from hackers.

How many accounts were compromised?

The breach impacted data related to approximately 347,000 individuals.

What data was leaked?

The data exposed in the breach included names, addresses, driver's license numbers, email addresses, phone numbers, Social Security Numbers, dates of birth, bank routing numbers, and checking account numbers.

How was Progressive hacked?

Unauthorized individuals gained access to Progressive Casualty Insurance's consumer data by exploiting improperly shared access credentials from third-party vendors. The specifics of the infiltration method remain unclear.

Progressive's solution

In response to the hack, Progressive Casualty Insurance's specific security measures remain unclear. However, the company did plan to offer credit monitoring and identity protection services to the affected customers. While the exact steps taken to secure their platform and prevent future incidents are not detailed, it is likely that Progressive worked to address the vulnerabilities that led to the breach and strengthen their overall security posture.

How do I know if I was affected?

It is not explicitly mentioned whether Progressive reached out to affected users. However, if you are a Progressive customer and haven't received a notification, you may visit Have I Been Pwned to check your credentials.

What should affected users do?

In general, affected users should:

  • Change Your Passwords: Immediately update your passwords for all affected accounts. Make sure the new passwords are strong and unique, not previously used on any other platform.

  • Reset Passwords for Other Accounts: If you've used the same or similar passwords for other online accounts, reset those as well. This is crucial as attackers often try using stolen passwords on multiple sites.

  • Enable Two-Factor Authentication (2FA): Activate 2FA on all affected accounts. Consider enabling this additional security feature on all other important online accounts to significantly reduce the risk of unauthorized access.

  • Monitor Your Accounts: Keep an eye on your accounts for any suspicious activity. If you notice anything unusual, report it to the appropriate authorities and financial institutions.

For more specific help and instructions regarding Progressive's data breach, please contact Progressive's support directly.

Where can I go to learn more?

If you want to find more information on the Progressive data breach, check out the following news articles:

Rapidly implement a modern Zero Trust network that is more secure and maintainable than VPNs.

Progressive Data Breach: What & How It Happened?

Twingate Team

Jun 14, 2024

In May 2023, Progressive Casualty Insurance experienced a data breach that was publicly announced in August 2023. The breach involved unauthorized individuals gaining access to consumers' Personally Identifiable Information (PII) through improperly shared access credentials by some of Progressive's third-party vendors. A class-action lawsuit was filed against Progressive, alleging negligence in securing and safeguarding personal data from hackers.

How many accounts were compromised?

The breach impacted data related to approximately 347,000 individuals.

What data was leaked?

The data exposed in the breach included names, addresses, driver's license numbers, email addresses, phone numbers, Social Security Numbers, dates of birth, bank routing numbers, and checking account numbers.

How was Progressive hacked?

Unauthorized individuals gained access to Progressive Casualty Insurance's consumer data by exploiting improperly shared access credentials from third-party vendors. The specifics of the infiltration method remain unclear.

Progressive's solution

In response to the hack, Progressive Casualty Insurance's specific security measures remain unclear. However, the company did plan to offer credit monitoring and identity protection services to the affected customers. While the exact steps taken to secure their platform and prevent future incidents are not detailed, it is likely that Progressive worked to address the vulnerabilities that led to the breach and strengthen their overall security posture.

How do I know if I was affected?

It is not explicitly mentioned whether Progressive reached out to affected users. However, if you are a Progressive customer and haven't received a notification, you may visit Have I Been Pwned to check your credentials.

What should affected users do?

In general, affected users should:

  • Change Your Passwords: Immediately update your passwords for all affected accounts. Make sure the new passwords are strong and unique, not previously used on any other platform.

  • Reset Passwords for Other Accounts: If you've used the same or similar passwords for other online accounts, reset those as well. This is crucial as attackers often try using stolen passwords on multiple sites.

  • Enable Two-Factor Authentication (2FA): Activate 2FA on all affected accounts. Consider enabling this additional security feature on all other important online accounts to significantly reduce the risk of unauthorized access.

  • Monitor Your Accounts: Keep an eye on your accounts for any suspicious activity. If you notice anything unusual, report it to the appropriate authorities and financial institutions.

For more specific help and instructions regarding Progressive's data breach, please contact Progressive's support directly.

Where can I go to learn more?

If you want to find more information on the Progressive data breach, check out the following news articles: