Apollo confirms breach after hackers access cloud systems, potentially exposing personal data

Apollo Global Management confirmed on August 21, 2026, that attackers gained unauthorized access to its cloud platforms between July 6 and July 10 using phishing and social engineering tactics. The breach exposed personal data including names, dates of birth, home addresses, contact information, and Social Security numbers, but no financial account details or proprietary business information were compromised. The attackers impersonated websites designed to mimic legitimate Apollo infrastructure and used phone-based deception to extract credentials. Apollo engaged external cybersecurity experts, began notifying affected individuals and regulators, and is offering 24 months of complimentary credit monitoring and identity protection services. Preliminary findings suggest the stolen data has not been publicly released or used for fraud, though investigators caution that absence of evidence is not evidence of absence. The six-week gap between the intrusion window and public disclosure is itself worth noting. The incident is part of a broader campaign targeting major financial institutions including Blackstone, KKR, and Bain Capital.

The information on this website is generated using AI and we cannot guarantee its accuracy. Please use it as reference information only.