Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
EY Cybersecurity Breach Impacts Goldman Sachs, Man Group

EY Cybersecurity Breach Impacts Goldman Sachs, Man Group

Posted on October 7, 2026 By CWS

Ernst & Young (EY) has disclosed a cybersecurity incident that compromised personal and financial data associated with clients of Goldman Sachs and Man Group. The breach targeted a platform integral to EY’s tax services, rather than the financial institutions’ own systems.

Details of the Data Breach

The Financial Times initially reported on the breach, highlighting its broader impact. According to letters distributed in late September, an unauthorized entity accessed the platform from March 28 to April 12, 2026, extracting sensitive documents tied to various EY clients.

The compromised data included names, addresses, tax IDs, email addresses, and financial information. Clients from Goldman Sachs’ wealth management division and the UK-listed hedge fund Man Group were among those affected. The exact number of impacted individuals remains unspecified.

Technical Aspects of the Breach

EY first announced the incident in July, attributing it to a vulnerability in Checkmarx software. However, specifics regarding the exploited software version or method remain undisclosed, limiting the understanding of the breach’s technical mechanism.

Previous reports by Cyber Security News identified the affected system as a third-party IT management platform used by EY’s staff to manage tax-related support. This system, containing sensitive client information, was outside the direct control of clients’ networks.

EY detected unusual activity on April 23, signaling a delay in identifying the security threat. An independent cybersecurity firm confirmed that document extraction had occurred within the March-April window, emphasizing the importance of timely detection.

Responses and Measures Taken

Goldman Sachs assured that their systems were unaffected, with client assets remaining secure. Man Group echoed similar sentiments, clarifying that the breach involved third-party software utilized by EY, not their internal systems.

Goldman Sachs informed clients via a September 24 letter that EY had partnered with an external cybersecurity firm to ensure the security of affected systems. They are reviewing these efforts, requesting evidence and third-party validation of EY’s corrective measures.

EY has communicated the breach to regulatory bodies in California, Texas, Massachusetts, and Vermont, offering credit monitoring and identity protection to those affected. The firm reported no signs of data misuse or targeted attacks on specific individuals, though this does not preclude future risks.

The incident underscores the vulnerability of support systems in exposing sensitive data, highlighting the need for robust cybersecurity measures to protect client information.

Cyber Security News Tags:Checkmarx, client data, cyber attack, Cybersecurity, data breach, EY, financial information, Goldman Sachs, identity protection, Man Group, tax services, third-party software, Vulnerability

Post navigation

Previous Post: AppViewX Enhances AI Security with New Tools
Next Post: Android October 2026 Security Update Fixes 25 Vulnerabilities

Related Posts

North Korean Hackers Exploit Fake Meetings to Target Crypto Experts North Korean Hackers Exploit Fake Meetings to Target Crypto Experts Cyber Security News
New Phishing Tactic Utilizes Google Cloud for Remcos RAT New Phishing Tactic Utilizes Google Cloud for Remcos RAT Cyber Security News
Critical Cisco Firewall Vulnerability Requires Immediate Fix Critical Cisco Firewall Vulnerability Requires Immediate Fix Cyber Security News
Critical Kimai Docker Vulnerability Demands Urgent Update Critical Kimai Docker Vulnerability Demands Urgent Update Cyber Security News
MEA Faces Surge in Shipping Scams Exploiting Phishing Tactics MEA Faces Surge in Shipping Scams Exploiting Phishing Tactics Cyber Security News
New Ghost-tapping Attacks Steal Customers’ Cards Linked to Services Like Apple Pay and Google Pay New Ghost-tapping Attacks Steal Customers’ Cards Linked to Services Like Apple Pay and Google Pay Cyber Security News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Anthropic Expands Access to Claude for Cybersecurity Experts
  • Android October 2026 Security Update Fixes 25 Vulnerabilities
  • EY Cybersecurity Breach Impacts Goldman Sachs, Man Group
  • AppViewX Enhances AI Security with New Tools
  • Cyberattack Exposes Data of Over 1 Million in Arizona Courts

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • October 2026
  • September 2026
  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Anthropic Expands Access to Claude for Cybersecurity Experts
  • Android October 2026 Security Update Fixes 25 Vulnerabilities
  • EY Cybersecurity Breach Impacts Goldman Sachs, Man Group
  • AppViewX Enhances AI Security with New Tools
  • Cyberattack Exposes Data of Over 1 Million in Arizona Courts

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark