Jack Henry Suffers Voice Phishing Ransomware Attack

Jack Henry Suffers Voice Phishing Ransomware Attack

First seen 2 Sep 2026, 06:17 UTC En.Cryptonomist.ChBankingexchangewww.equifax.comwww.ftc.govCrowdfundinsider+2 51.9

Article Content

Browse articles
ThreatCluster

Jack Henry, a major US banking technology provider, confirmed a ransomware attack attributed to the hacking group ShinyHunters, which utilized voice phishing to gain access to its internal systems. The attack compromised personally identifiable information from fewer than 10 of its 7,200 client banks but did not disrupt client-facing systems or core banking operations. The company has offered two years of credit monitoring to affected institutions and has stated it will not pay the ransom demanded by the attackers. Jack Henry's security measures detected and contained the intrusion, and they are cooperating with federal law enforcement. The incident highlights the vulnerabilities of technology vendors to social engineering tactics rather than technical exploits.

Key Points: • Jack Henry was attacked via voice phishing, compromising data from fewer than 10 client banks. • No disruption occurred to client-facing systems or core banking operations during the attack. • Jack Henry is providing credit monitoring for affected institutions and will not pay the ransom.

Ask AI about this cluster

Timeline

2026-09-02
Jack Henry confirms ransomware attack
The company disclosed a ransomware incident caused by voice phishing, affecting less than 10 client banks.
En.Cryptonomist.Ch
2026-09-02
Attack attributed to ShinyHunters
The hacking group ShinyHunters was identified as the perpetrator of the voice phishing attack.
Crowdfundinsider
2026-09-02
No client-facing systems affected
Jack Henry confirmed that core banking platforms and daily processing services remained operational and unaffected.
Bankingexchange
2026-09-02
Credit monitoring offered to affected institutions
The company is providing two years of credit monitoring services to the institutions whose data was compromised.
Crowdfundinsider