The firm engaged third-party forensic experts to trace the attack vector and
Apollo Global Management, the $1 trillion investment firm, confirmed a security breach after hackers gained access to its cloud platforms through social engineering tactics. The intrusion lasted four days before being detected and contained, according to internal reports released Monday. No client data or financial assets were compromised in the incident. The attackers reportedly used deceptive communication to trick employees into revealing login credentials, allowing unauthorized entry into Apollo’s cloud infrastructure. Once inside, the hackers explored internal systems but did not exfiltrate sensitive information, the company stated. Apollo’s security team identified anomalous activity and swiftly isolated affected environments to prevent further access. How the Breach Unfolded Over Four Days Internal logs show the attackers moved laterally within the cloud environment after initial access, testing permissions and reviewing non-sensitive operational data. Apollo’s cybersecurity team detected unusual login patterns on the fourth day and launched an immediate investigation.
Latest news
Apple unveils new iPhone lineup next week
NordVPN Browser Extension Gets Redesigned Interface and Smarter Search
Ugreen's DXP6800 Pro NAS Benefits From Additional Network Upgrade
Google Gemini Error Strands Climbers on Mount ShastaThe firm engaged third-party forensic experts to trace the attack vector and confirm the scope of the breach. Could Stronger Training Have Prevented This? Apollo acknowledged that human error played a role in the breach and announced plans to enhance employee awareness programs. The company said it will expand phishing simulation exercises and strengthen multi-factor authentication protocols across all departments. Experts note that social engineering remains one of the most effective methods for bypassing technical defenses. Frequently Asked Questions Was any client or financial data stolen during the breach? Apollo confirmed that no client data, investment records, or financial assets were accessed or stolen by the attackers. The breach was limited to internal cloud platforms with no evidence of data exfiltration. What steps is Apollo taking to prevent future incidents? The firm is implementing mandatory cybersecurity training, upgrading identity verification systems, and conducting regular penetration tests.
Apollo also plans to increase monitoring of cloud access points and improve anomaly detection capabilities. How did the hackers initially gain access to the systems? The attackers used social engineering techniques, likely involving deceptive emails or messages, to trick employees into revealing login credentials. This allowed them to bypass initial security layers and enter the cloud environment.
Comments
Leave a comment