Itweb.Co.Za MIP Holdings Cyber Breach Exposes Data of 45 South African Insurers' Customers
Article Content
- •MIP Holdings suffered a data breach affecting customers of 45 insurers.
- •Attackers accessed MIP's Jira platform using credentials from a compromised personal laptop.
- •Approximately 400,000 records were exposed, including sensitive personal information.
A cyber breach at MIP Holdings compromised personal information of customers from approximately 45 South African insurance companies. The breach occurred after attackers accessed MIP's Jira support platform, exploiting credentials obtained from an employee's personal laptop. The attackers infiltrated the system on May 25, 2026, and extracted around 400,000 records, including email addresses, cellphone numbers, and policy details. MIP Holdings confirmed that its core systems remained unaffected, but the exposed data included sensitive information visible in support tickets. The incident was reported to the Information Regulator and the Prudential Authority, with MIP notifying affected clients. The threat actor, known as 'The Gentlemen', is a ransomware group that has been active since mid-2025. MIP is currently assessing the full scope of the breach and has communicated with stakeholders regarding the incident.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (3)
Following this threat?
Track The Gentlemen and Hollard in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Healthcare Cyberattacks Disrupt Patient Care and Expose Sensitive Data Two major healthcare companies, Boston Scientific and Nutex Health, reported cyberattacks that compromised patient data and disrupted operations. Boston Scientific's systems were breached on August 25, affecting the functionality of pacemakers and other heart devices, preventing remote monitoring. The company is…
Multiple Ransomware Attacks Target Diverse Industries in September 2026 In early September 2026, several ransomware groups executed attacks on various organizations, including Krybit's assault on Reignwood Park Thailand and Arab Maritime Petroleum Transport Company, Everest's attack on VIVOTEK, and Settra's targeting of Golden Neo Life. These incidents involved threats to leak sensitive…