Wall Street giant Apollo confirms personal data breach
Names, dates of birth, contact information, home addresses, and Social Security numbers (SSNs) were accessed.

Image via Shutterstock
- Apollo confirmed a social engineering cyberattack exposed names, birth dates, addresses, contact details and Social Security numbers.
- Attackers accessed some cloud platforms between July 6 and July 10; Apollo says client funds were not compromised.
- Apollo has not disclosed how many people were affected, but is offering credit monitoring and identity protection.
- The incident comes amid wider social-engineering attacks targeting financial firms, though Apollo has not attributed the breach.
Key Takeaways by nexos.ai, reviewed by Cybernews staff.
US investment giant Apollo Global Management has confirmed a cyberattack that compromised personal data, including Social Security numbers.
According to a data breach notification Apollo filed with the California Attorney General, the company experienced a social engineering incident that gave attackers unauthorized access to certain cloud platforms between July 6th and July 10th.
The private equity group said it had notified law enforcement and launched an investigation, which revealed on August 12th that potentially impacted information included names, dates of birth, contact information, home addresses, and Social Security numbers (SSNs).
It later clarified that the breach was limited to a subset of systems and no client funds were compromised.
Apollo added that it currently has no evidence that personal information has been publicly posted or used for identity theft or fraud.
It’s not clear how many people were affected or whether the compromised data belonged to employees or clients. According to its latest full-year filing, as of December 31, 2025, Apollo had around 6,140 employees.
The company is providing complimentary access to Credit Monitoring and Identity Protection Services. All affected individuals are encouraged to remain vigilant against incidents of identity theft and fraud and monitor their accounts and credit reports for suspicious activity.
According to a report by Reuters, cybercriminals had created websites designed to steal employee passwords at hundreds of companies recently, including ride-hailing company Uber and jeans brand Levi Strauss.
Earlier this month, Google security researchers warned about a social-engineering campaign increasingly targeting the financial services sector.
Stay updated with our latest stories and follow us on social media
Be the first to discover new stories, ideas, and updates from our team.
The group Google tracks as UNC6671 calls employees pretending to be IT support and steals credentials and session tokens by directing them to convincing fake login pages. After gaining access to corporate cloud services, hackers harvest company data for extortion.
Google said that by July 2026, UNC6671 had narrowed its target profile to the financial and legal sectors, with observed infrastructure directed at private equity firms, law firms, and financial rating agencies.
Apollo has not attributed its incident to UNC6671.