Arch Capital Services notified consumers of a data breach stemming from the MOVEit transfer software vulnerability (CVE-2023-34362) exploited by the Cl0p threat actor. The incident, discovered May 26, 2023, resulted in the exfiltration of personal information including names, SSNs, and financial account details for approximately 100,000 individuals. Arch Capital Services offered one year of credit monitoring.
Affected (this filing): 100,000