logo

Banking Customer Data Exposed Following Ransomware Attack on Vendor

ID: b4cf66dc-6456-54ae-bc45-4eb239e3dd8f

STIX ID: report--b4cf66dc-6456-54ae-bc45-4eb239e3dd8f

Feed Name: Halcyon Blog

Threat Score
65/100

Date Published: 2025-04-09

Date Updated: 2026-04-28

...
...

A ransomware attack on a third-party printing vendor led to the exfiltration of about 8,200 customer statements and letters for DBS Bank and Bank of China (Singapore) dated December 2024–February 2025, exposing names, postal addresses and certain financial details; banks report no breach of their own systems, no customer credentials or account balances were disclosed, and no unauthorized transactions have been detected. Investigations are ongoing and potentially affected customers are being notified. The report underscores the risk posed by vendor/supply-chain compromises and recommends stronger vendor security, encryption, and coordinated incident response.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.