Skip to content

Case study · Banking

Banking — Stolen third-party data sale stopped

An employee of a third party that supplies services to a bank stole sensitive information and tried to sell it. ACID detected these attempts and alerted the bank, provided all known details, and continued to monitor for more.

Thanks to the information supplied by ACID, the perpetrator was apprehended, the stolen data was retrieved, and the bank’s reputation remained intact. ACID continued monitoring the web for several months to verify that the data had not been copied and was still being offered for sale by possible accomplices.

In a related case, a disgruntled bank employee stole a database of 1 million customer records and 2 million credit cards and demanded ransom. ACID conducted extensive searches on multiple platforms to check whether the stolen data was also being offered for sale, helping give law enforcement time to act. With the additional information ACID collected, the employee behind the attack was identified and brought to justice, and the stolen data retrieved.

Frequently asked questions

What was the threat?

An employee of a third party that supplies services to a bank stole sensitive information and tried to sell it.

What was the outcome?

Thanks to information supplied by ACID, the perpetrator was apprehended, the stolen data was retrieved, and the bank’s reputation remained intact. ACID continued monitoring for several months to verify the data was not still offered for sale.

Ready to detect threats earlier?

Talk with ACID about tailored dark web monitoring and real-time threat intelligence for your organization.

Talk to an analyst