UniCredit Bank Says 3 Million Customers Impacted with the Data Breach

Italian bank giant UniCredit disclosed that 3 million Italian clients’ data was exposed in the 2015 data breach. The bank confirms the threat the actors accessed a file containing the customer records.

The bank also confirms that with the compromised details the attacker could not able to gain access to the customer accounts or perform unauthorized transactions.

“The UniCredit cybersecurity team has identified a data incident involving a file generated in 2015 containing a defined set of approximately 3 million records limited to the Italian perimeter,” the bank said in a statement.

Exposed customer details include the following details such as names, city, telephone number and email only. It doesn’t include any personal data or banking details.

After the breach, the bank launched an investigation immediately and informed all the authorities including police about the incident.

On the other hand, Italian police also carried out an investigation to see any crimes committed with the details obtained from the UniCredit file.

UniCredit spokesperson said Reuters that no details could be disclosed on how the breach happened. The bank contacting the affected persons.

This is not the first time, UniCredit victim of two cyberattacks earlier, September-October 2016 and June-July 2017, affecting 400,000 Italian customers.

The bank said that they have invested 2.4 billion euros since 2016 to boost cybersecurity.

You can follow us on LinkedinTwitterFacebook for daily Cybersecurity and hacking news updates.

Also Read

Avast Hacked – Hackers Gained Network Access Via Avast Own VPN With Compromised Credentials

The Student’s Guide to Cyber Security – 9 Top Tips to Prevent Yourself From Hackers

Gurubaran

Gurubaran is a co-founder of Cyber Security News and GBHackers On Security. He has 10+ years of experience as a Security Consultant, Editor, and Analyst in cybersecurity, technology, and communications.

Recent Posts

Docusnap for Windows Flaw Exposes Sensitive Data to Attackers

A recently disclosed vulnerability in Docusnap's Windows client software (CVE-2025-26849) enables attackers to decrypt sensitive…

7 minutes ago

CISA Warns of Active Exploitation of Microsoft Windows Win32k Vulnerability

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added CVE-2018-8639, a decade-old Microsoft Windows privilege…

25 minutes ago

Update Alert: Google Warns of Critical Android Vulnerabilities Under Exploit

Google’s March 2025 Android Security Bulletin has unveiled two critical vulnerabilities—CVE-2024-43093 and CVE-2024-50302—currently under limited,…

3 hours ago

BigAnt Server 0-Day Vulnerability Lets Attackers Run Malicious Code Remotely

A critical vulnerability in BigAntSoft's enterprise chat server software has exposed ~50 internet-facing systems to…

3 hours ago

Bubba AI, Inc. is Launching Comp AI to Help 100,000 Startups Get SOC 2 Compliant by 2032.

With the growing importance of security compliance for startups, more companies are seeking to achieve…

5 hours ago

IBM Storage Virtualize Flaws Allow Remote Code Execution

Two critical security flaws in IBM Storage Virtualize products could enable attackers to bypass authentication…

5 hours ago