CNA Financial Pays $40M Ransom After Cyberattack - Fox Business
Fox Business Flash top headlines for May 21
Check out what's clicking on FoxBusiness.com.
CNA Financial Corporation, a major U.S. insurance company, has revealed that it paid a $40 million ransom after a March cyberattack, according to reports.
The Chicago-based insurance giant on May 12 released a security incident update informing clients that it took "immediate action" after the March 21 attack "by proactively disconnecting" its systems from its network, and CNA has "no evidence to indicate that external customers were potentially at risk of infection due to the incident."
"CNA followed all laws, regulations, and published guidance, including OFAC’s 2020 ransomware guidance, in its handling of this matter," CNA told FOX Business.
CNA is not commenting on the ransom, specifically, but it has been in communication with the FBI and Office of Foreign Assets Control regarding the cyber incident and the threat actor’s identity," the company said. The $40 million figure was first reported by Bloomberg, citing people familiar with the matter.

A CNA logo hangs on the CNA Financial Corp. headquarters in Chicago, Illinois, U.S., on Monday, Oct. 27, 2008. (Photo by Aynsley Floyd/Bloomberg via Getty Images)
The company added that the ransomware group is called Phoenix, which is "not on any prohibited party list and is not a sanctioned entity."
GET FOX BUSINESS ON THE GO BY CLICKING HERE
The insurance firm is currently operating as normal and has updated its systems. CNA is also "reviewing the impacted data to determine the contents using both technology and a manual review," its May update reads.
The news comes after Bloomberg reported last week that the Colonial Pipeline paid $5 million in ransom to a group of hackers called DarkSide that targeted its infrastructure, causing gas shortages up and down the East Coast for several days.
CLICK HERE TO READ MORE ON FOX BUSINESS
The Biden administration last week said it planned to launch a task force aimed at cracking down on hackers responsible for ransomware attacks after the Colonial attack.
FOX Business' Brittany De Lea contributed to this report.
insurance
- Navigating Car Insurance Claims: Negotiation Strategies After an Accident
- Legal Sea Foods Sues Strathmore Insurance Over COVID-19 Claim Denial
- Kidnap & Ransom Insurance: Protecting Key Executives & Your Business
- How Insurance Companies Profit: Understanding Premium Collection & Investment
- Navigating Boat Rental Insurance Claims After an Accident
- Understanding Insurance Providers: Types & Sources
- Captive Insurance Companies: Definition & Benefits
- Mutual Insurance Companies: Understanding Ownership & Benefits
- After a Car Accident: Essential Steps to Take with Your Insurance
-
Fleet Insurance: Protecting Your Company Vehicles & Reducing RiskFleet insurance is a specific type of property and casualty insurance designed to insure company cars. When you use fleet insurance, the employees who drive your company-owned vehicles use your ...
-
Comprehensive Business Travel Insurance: Safeguard Your Company and EmployeesBusiness travel insurance supplements the insurance lines you have for the workplace by covering many of the same claims when your employees are traveling. For example, your workers compensation ...
