🇺🇸 New York State Department of Financial Services
The Department of Financial Services (DFS) recently learned of a systemic and aggressive campaign to exploit cybersecurity flaws in public-facing websites to steal Nonpublic Information (NPI).
DFS urges all regulated entities with Instant Quote Websites to immediately review those websites for evidence of hacking. Even if that NPI is redacted, hackers have shown that they are adept at stealing the full unredacted NPI.
https://www.dfs.ny.gov/industry_guidance/industry_letters/il20210216_cyber_fraud_alert