Jack Henry Responds to Cybersecurity Incident Involving Vishing Attack

Jack Henry Responds to Cybersecurity Incident Involving Vishing Attack

First seen 31 Aug 2026, 22:32 UTC Markets.Ftwww.prnewswire.com 39.0

Article Content

Browse articles
ThreatCluster

On August 31, 2026, Jack Henry & Associates Inc. reported a cybersecurity incident affecting a limited part of its internal, non-production environment. The incident was initiated by a vishing attack attributed to the threat actor ShinyHunters, impacting personally identifiable information (PII) for fewer than 10 clients. No client-facing systems or operational services were disrupted, and the company did not experience any system outages. Jack Henry has notified over 7,200 clients about the incident and is providing two years of credit monitoring services to the affected financial institutions. The company has engaged a third-party cyber forensics firm and is collaborating with federal law enforcement. Jack Henry confirmed that the incident involved an extortion attempt but stated they will not make any payment to the threat actor. The company emphasized its commitment to transparency and operational integrity.

Key Points: • Jack Henry detected a vishing attack impacting PII for fewer than 10 clients. • No client-facing systems were disrupted, and operational services remained secure. • The company is offering two years of credit monitoring to affected institutions.

Timeline

2026-08-31
Jack Henry issues statement on cybersecurity incident
Jack Henry reported a cybersecurity incident due to a vishing attack by ShinyHunters, affecting PII for fewer than 10 clients.
PRNewswire
2026-08-31
Credit monitoring services offered
Jack Henry announced it would provide two years of credit monitoring services to affected financial institutions.
Markets.Ft
2026-08-31
Collaboration with federal law enforcement
Jack Henry confirmed it is working with federal law enforcement and a third-party cyber forensics firm on the incident.
PRNewswire