DisclosureLens
FEDERALItem 8.01 · voluntaryHackingFinancial ServicesFinanceLowContained

REINSURANCE GROUP OF AMERICA, INCORPORATED

bd_5cf4ae65a69d329e · schema v1 · pii pii-v1

Severity

Low

Discovered

Oct 16, 2023

Filed

Oct 26, 2023

To disclose

10 days

Affected

Not disclosed

Confidence

88%
Full breach record for REINSURANCE GROUP OF AMERICA, INCORPORATED

Reinsurance Group of America, Incorporated disclosed in an Item 8.01 Form 8-K that on October 16, 2023 it identified a cybersecurity incident in which an unauthorized third party accessed certain technology systems, believed to have begun October 15, 2023. RGA took systems offline, engaged forensic experts, and notified insurance regulators and law enforcement. Investigation to date found no evidence client policy holder data was accessed or extracted and no evidence of encryption or ransomware. RGA does not believe the incident will be materially adverse.

Incident timeline

undetected · 1 days
discovery → filing · 10 days

Oct 15, 2023

Begins

Oct 16, 2023

Discovered

Oct 26, 2023

Filed

vs. sector median

7 wks faster

Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filing

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statementThis record

Unlocks: materiality, stated response, full audit trail. Ceiling removed.