MoneyGram confirms hack: Social Security numbers, driver’s licenses, and other customer data have leaked

The money transfer company temporarily shut down its systems when it discovered the data breach.
MoneyGram logo
The latest major data breach has impacted customers of the money transfer service MoneyGram. Credit: Pavlo Gonchar/SOPA Images/LightRocket via Getty Images

On Monday, MoneyGram confirmed that it had been targeted in an cyberattack, resulting in an unauthorized party gaining access to their company's internal systems. 

It's unclear how many of MoneyGram's customers were affected. According to the company's website, MoneyGram has more than 150 million customers across 200 countries and territories.

MoneyGram notified customers about the data breach on its website, explaining that the information affected will be different for each customer.


You May Also Like

The types of customer data that have been stolen in the breach include names, home addresses, phone numbers, email addresses, birthdays, Social Security numbers, bank account numbers, MoneyGram Plus Rewards numbers, and transaction information. 

In addition, copies of IDs, such as driver's licenses as well as other identification documents like copies of utility bills, were also taken. MoneyGram said that for a "limited number of consumers," criminal investigation information was also taken in the cybersecurity incident.

MoneyGram data breach just the latest theft of customer data

MoneyGram first became aware of unauthorized access of its internal systems on Sept. 27, 2024 and proceeded to temporarily shut down the affected systems.

"Upon detecting the issue, we took steps to contain and remediate it, including proactively taking certain systems offline, which temporarily impacted the availability of our services," MoneyGram said in a statement.

After a subsequent investigation, the company shared that the breach took place between September 20 and 22.

Just yesterday, Mashable reported on a data breach affecting Comcast customers. However, in that cybersecurity incident, Comcast customers' data was taken via a data breach at a third-party data collection company. MoneyGram's data breach is a result of a direct hack of the money transfer company itself.

According to BleepingComputer's report, the cybersecurity incident at MoneyGram was the result of a social engineering attack on its IT help desk. A hacker allegedly impersonated an employee and gained access to the company's network. MoneyGram has yet to share details of the incident. However, the company has confirmed that it is not a ransomware attack.

Due to the breach, MoneyGram will be providing affected customers with two years of free identity protection and credit monitoring services.

Topics Cybersecurity

Mashable Potato

Recommended For You
Panera Bread breach: ShinyHunters claims hack of 14 million customers' data
Panera Bread logo on storefront


Updating your security mindset: Keep your data private and your devices secure
By PCMag
Cyber Security

Former DOGE hire still has 'god level' Social Security data, whistleblower says
A woman with white hair holding a sign saying "we need social security"

How to contact Amazon customer service during your Big Spring Sale shopping spree
illustration of brown packages

Trending on Mashable
NYT Connections hints today: Clues, answers for April 3, 2026
Connections game on a smartphone

Wordle today: Answer, hints for April 3, 2026
Wordle game on a smartphone

What's new to streaming this week? (April 3, 2026)
A composite of images from film and TV streaming this week.

NYT Strands hints, answers for April 3, 2026
A game being played on a smartphone.

The biggest stories of the day delivered to your inbox.
These newsletters may contain advertising, deals, or affiliate links. By clicking Subscribe, you confirm you are 16+ and agree to our Terms of Use and Privacy Policy.
Thanks for signing up. See you at your inbox!