A data breach lawsuit has been filed against MoneyGram, seeking compensation for affected customers. The lawsuit claims that MoneyGram failed to protect customers' sensitive information.
MoneyGram confirmed that a data breach occurred in 2016, affecting approximately 9,000 customers. This breach exposed customers' personal and financial data.
Those affected by the breach may be eligible for compensation. The lawsuit seeks to hold MoneyGram accountable for its alleged failure to protect customer data.
What Happened?
MoneyGram recently experienced a data breach that exposed sensitive personal information. The breach was discovered on September 27, 2024, after MoneyGram launched an investigation into unauthorized access to its computer network.
The breach occurred between September 20 and September 22, 2024, and may have affected a significant amount of personal data. The types of information potentially exposed include name, Social Security number, address, date of birth, contact information, driver's license or government-issued ID, utility bills, bank account numbers, MoneyGram Plus Rewards numbers, transaction information, and criminal investigation information.
Curious to learn more? Check out: Synchrony Bank Lawsuit 2024
MoneyGram has confirmed that the breach was reported within the required 72-hour timeframe. This is a good sign, as it shows that the company took swift action to address the issue. However, the breach has had some significant consequences, including the cancellation of MoneyGram's contract with the UK Post Office.
Here are some of the types of information that may have been exposed in the breach:
- Name
- Social Security number
- Address
- Date of birth
- Contact information (e.g., phone number, email address)
- Driver’s license or other government issued identification documents
- Utility bills
- Bank account numbers
- MoneyGram Plus Rewards numbers
- Transaction information (e.g., dates and amounts of transactions)
- Criminal investigation information (such as fraud)
MoneyGram is offering 24 months of complimentary credit monitoring services to affected individuals. This is a good step towards mitigating the effects of the breach.
If You Received a Breach Notification
If you received a breach notification from MoneyGram, you should know that the company reported the data breach within 72 hours of discovering the incident, as required by law.
The UK's data protection regulator, the Information Commissioner's Office (ICO), is investigating MoneyGram as a result of the breach.
You can no longer use MoneyGram's services at UK Post Offices, as the contract renewal was cancelled following the data breach.
The UK Post Office offered to extend the current contract for a shorter period to understand the impact of the situation, but MoneyGram declined.
India has had a similar International Money Transfer Service agreement with MoneyGram since 2011, which may be affected by the breach.
Support for Affected Parties
If you were impacted by the MoneyGram data breach, it's essential to take proactive steps to protect your personal information.
Carefully review the breach notice and retain a copy of it. This will help you understand what information was compromised and what steps to take next.
Enrolling in free credit monitoring services provided by MoneyGram can be a valuable resource in detecting potential identity theft or fraudulent activity.
Change your passwords and security questions for online accounts to prevent unauthorized access. This is a crucial step in securing your online presence.
Regularly reviewing account statements for signs of fraud or unauthorized activity is a good practice to adopt, especially after a data breach.
Monitoring your credit reports for signs of identity theft is also a good idea. You can request a temporary fraud alert from a credit bureau to add an extra layer of protection.
Here are the steps you can take to protect yourself:
- Carefully review the breach notice and retain a copy;
- Enroll in any free credit monitoring services provided by the company;
- Change passwords and security questions for online accounts;
- Regularly review account statements for signs of fraud or unauthorized activity;
- Monitor credit reports for signs of identity theft; and
- Contact a credit bureau(s) to request a temporary fraud alert.
UK Data Breach
MoneyGram's data breach has caught the attention of the UK's data protection regulator, the Information Commissioner's Office (ICO), which is now investigating the incident.
Companies are required to report data breaches within 72 hours of discovering the incident, and MoneyGram did just that.
The data breach has also led to the cancellation of MoneyGram's contract renewal with the UK Post Office. This means that MoneyGram's services are no longer available at UK Post Offices.
The UK Post Office had offered to extend the current contract for a shorter period to understand the impact of the situation, but MoneyGram declined.
MoneyGram's US Win
In 2024, Judge Martha M. Pacold ruled that plaintiffs' arguments were unpersuasive in proving that MoneyGram had intentionally caused consumer fraud.
The case against MoneyGram was dismissed by the United States District Court For The Northern District Of Illinois, marking a significant win for the company.
MoneyGram had been under scrutiny for its anti-fraud and anti-money laundering (AML) program, but the court ultimately found in their favor.
The company had previously agreed to enhance its anti-fraud and AML compliance programs as part of a settlement with the US Department of Justice and the Federal Trade Commission in 2018.
This settlement came after MoneyGram's corrupt agents and others perpetrated consumer fraud schemes in 2012, leading to a deferred prosecution agreement (DPA) between the company and regulators.
Recommended read: Credit Card Fees Class Action
Frequently Asked Questions
Has MoneyGram been hacked?
Yes, MoneyGram has been hacked, with a data breach disclosed on October 7, 2024, affecting its systems from September 22-24. Learn more about the investigation and potential impact on customers.
What is the MoneyGram data breach?
On September 27, 2024, we discovered a data breach where an unauthorized party accessed personal information of some consumers between September 20-22, 2024. Our investigation is ongoing to determine the full extent of the breach
Sources
- https://www.computerweekly.com/news/366611598/Money-transfer-firm-MoneyGram-rushes-to-contain-cyber-attack
- https://www.bankinfosecurity.com/moneygram-money-transfer-firm-reports-customer-data-breach-a-26476
- https://straussborrelli.com/2024/09/24/moneygram-international-data-breach-investigation/
- https://www.medianama.com/2024/10/223-moneygram-data-breach-exposes-names-bank-accounts-and-ids-of-customers/
- https://androvett.com/media-coverage/lawsuit-alleges-western-union-moneygram-unlawfully-share-customers-personal-information-with-law-enforcement
Featured Images: pexels.com