GLOBE LIFE INC.
ent_019dd16eec41f14c466af54f6817b703
Disclosures
3
SEC 8-K · SEC 10-K Item 1C · 1 jurisdiction
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
5,000
nationwide · SEC 8-K FEDERAL
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- GLOBE LIFE INC.
- Normalized
- globe life— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- 0000320335
- Domain
- None on record
Disclosure history (3)newest first
- FEDERALSEC 8-Kas victim2024-10-17
Globe Life Inc. disclosed in a voluntary Item 8.01 Form 8-K that an unknown threat actor sought to extort the company in exchange for not disclosing information held by the company and its independent agents. Globe Life activated its incident response plan, engaged external counsel and cybersecurity experts, and reported the extortion attempt to federal law enforcement. The company's ongoing investigation indicates the information may relate to customers and customer leads traceable to its subsidiary, American Income Life Insurance Company, and includes PII such as names, email addresses, phone numbers, postal addresses, and in some instances Social Security numbers, health-related data, and other policy information for approximately 5,000 individuals — a figure the company states has not been fully verified. The threat actor also shared information on a limited number of individuals with short sellers and plaintiffs' attorneys, and claims to possess additional, unverified categories of information. The company states the extortion did not involve ransomware or any interruption to its systems or operations, and that it does not expect a material impact. This filing supplements Globe Life's initial June 14, 2024 Form 8-K on the same extortion incident.
- FEDERALSEC 8-Kas victim2024-06-14
Globe Life Inc. disclosed on June 14, 2024 (Item 8.01) that following an inquiry from a state insurance regulator, it initiated a review of potential vulnerabilities related to access permissions and user identity management for a Company web portal that likely resulted in unauthorized access to certain consumer and policyholder information. The Company removed external access to the portal, activated its incident response plan, and retained security experts. The full scope is not yet known; not yet determined as material under Item 1.05.
- FEDERALSEC 10-K Item 1Cas victim2024-02-28
Great Lakes Insurance SE (GL 2023 FORM 10-K) discloses its cybersecurity risk management strategy under Item 1C. The company states it has not experienced a cybersecurity incident resulting in a material adverse effect on its business, financial condition, or results of operations. The filing details proactive risk management, including ERM, MITRE ATT&CK mapping, and third-party vendor assessments, but confirms no actual breach occurred.