Wealthsimple exec apologizes to customers after data breach, says no account details were misused

Wealthsimple Apologizes for Data Breach Impacting Thousands, Assures No Misuse of Account Details
Photo: The Globe and Mail

Wealthsimple Apologizes for Data Breach Impacting Thousands, Assures No Misuse of Account Details

Wealthsimple, a Toronto-based online financial services provider, apologized to its customers after a data breach exposed the sensitive personal information of around 30,000 clients. The breach, detected on August 30, compromised data such as social insurance numbers, account numbers, dates of birth, and government IDs. Despite the breach, the company assured that no funds were stolen, client passwords were not compromised, and there was no indication that the accessed data was misused. Wealthsimple confirmed that the breach stemmed from a third-party vendor’s compromised software package, though details about the vendor remain undisclosed. The company took swift action to contain the breach within hours. As a preventive measure, affected clients will receive two years of free credit monitoring, identity theft protection, and dark-web monitoring. Experts have advised customers, even those not directly impacted, to change passwords, enable multi-factor authentication, and monitor their accounts closely. While some have advised locking SIM cards, cybersecurity experts deem this unnecessary for most banking breaches. Wealthsimple has reassured that steps are in place to prevent future breaches, and impacted clients have been directly notified by email.

Leave a Reply

Your email address will not be published. Required fields are marked *