Were you recently affected by a data breach?

Apollo Global Management Data Breach

Apollo Global Management, one of the world’s largest alternative asset managers, notified individuals that a social engineering attack gave an unauthorized party access to certain cloud platforms between July 6 and July 10, 2026, potentially exposing names, dates of birth, addresses, and Social Security numbers.

Apollo Global Management
Date of Breach: July 6-10, 2026
CAU logo

Who was affected:

Clients of Apollo Global Management

Impacted Data:

Name, date of birth, contact information, home address, and Social Security number

Apollo Global Management, a New York-based alternative asset manager overseeing hundreds of billions of dollars in assets, has notified individuals that a cybersecurity incident may have compromised their personal information. Financial firms that manage this kind of data are entrusted with protecting it from unauthorized access, and when that trust is broken, the people whose information was exposed deserve clear answers and a path toward protection.

Apollo Global Management’s Data Breach Investigation

According to a notice sent to affected individuals, Apollo experienced what it describes as a “social engineering incident” affecting the security of personal information in its systems. Upon detecting the incident, Apollo says it promptly notified law enforcement, engaged outside cybersecurity and forensic experts, enhanced its security protocols, and launched a formal investigation into what happened.

Apollo’s investigation determined that an unauthorized party gained access to certain of the firm’s cloud platforms between July 6 and July 10, 2026. The firm says it learned on August 12, 2026 that the information potentially affected by this access included individuals’ names, dates of birth, contact information, home addresses, and Social Security numbers.

This incident follows a broader wave of social engineering attacks reported in August 2026 that targeted major U.S. private equity and financial services firms. According to reporting from Reuters, hackers used “meticulous social engineering tactics,” calling employees directly on their personal cellphones while posing as internal IT help desk staff, in some cases even displaying a spoofed version of the company’s real help desk phone number, in an effort to trick employees into resetting passwords or multifactor authentication credentials. Apollo was reportedly among the firms targeted in this broader campaign.

Apollo states it has no evidence that the affected information has been publicly posted or misused for identity theft or fraud as of the date of its notice, though the investigation remains ongoing and additional updates may follow. Given the sensitivity of Social Security numbers and other identifying information involved, affected individuals face a real and ongoing risk of identity theft and financial fraud, and a firm that stores this kind of data has an obligation to protect it with reasonable safeguards.

When Did This Breach Occur?

Apollo’s investigation determined that unauthorized access to its cloud platforms occurred between July 6 and July 10, 2026. The firm says it learned on August 12, 2026 that personal information had been potentially impacted, and began sending written notification letters to affected individuals dated August 21, 2026.

What Information Was Breached?

Apollo’s notice states that the following categories of information were potentially affected: full name, date of birth, contact information, home address, and Social Security number. The involvement of Social Security numbers alongside other identifying details significantly heightens the risk of identity theft for those affected.

What You Can Do

Apollo is offering affected individuals 24 months of complimentary credit monitoring and identity protection services through Cyberscout, a TransUnion company. Affected individuals should enroll within 90 days of the date of their notification letter.

In addition to enrolling in the monitoring services offered, affected individuals are encouraged to:

  • Regularly review financial account and credit card statements for unauthorized activity
  • Place a fraud alert or security freeze on their credit files with the three major credit bureaus
  • Obtain a free credit report at annualcreditreport.com and review it for suspicious accounts or inquiries
  • Remain alert to phishing emails, texts, or phone calls referencing this incident, especially calls impersonating IT help desk staff
  • Contact Apollo’s dedicated help line for questions about the incident or to activate monitoring services

File a Data Breach Lawsuit Against Apollo Global Management

If you received a data breach notification letter from Apollo, you may be entitled to compensation for the exposure of your Social Security number and other personal information. Contact us at Class Action U, where we’ll connect you with a lawyer skilled in class action lawsuits. If you’ve been contacted about this breach or believe your information was compromised, don’t wait to explore your legal options.

Were you recently affected by a data breach?
Other Data Breaches
Date of Breach: July 6-10, 2026
Date of Breach: April 1, 2026
Date of Breach: Not publicly disclosed
Related News

Frequently Asked Questions

A data breach occurs when sensitive, confidential, or protected information is accessed, stolen, or disclosed without authorization. Data breaches often occur through phishing emails, malware, weak passwords, insider threats, or unsecured databases. Indicators of a data breach can include unexpected password resets, suspicious account activity, unauthorized transactions, or notifications from companies about compromised information.If you suspect your data has been compromised, you must take measures and act quickly. Change passwords, enable two-factor authentication, review your financial accounts for unusual activity and consider freezing your credit.

Once stolen, your personal information may be sold on the dark web or used for identity theft and financial fraud. In some cases, hackers use the data to extort companies or launch further attacks. Victims often face long-term risks, including damage to credit and privacy.

If you receive a data breach notification, don’t ignore it. Immediately change passwords for the affected account and any others that share credentials. Enroll in any free credit monitoring services offered and monitor financial statements closely.

To pursue a data breach claim, you’ll need documentation showing your information was compromised and proof of resulting harm, such as fraudulent charges, credit score damage, or identity theft reports. Notification letters, financial records, and communication with the breached company can help support your claim.

Yes. If a company fails to protect consumer data or delays notifying victims, it may be held liable under state and federal privacy laws. Many victims join class action lawsuits to recover financial losses and hold negligent organizations accountable.

Data breach settlements vary widely depending on the size of the breach, type of data compromised, and damages suffered by victims. Payouts may include cash compensation, identity theft protection, or reimbursement for losses. Many settlements range from a few hundred to several thousand dollars per person. A skilled data breach lawyer can guide victims through the complex legal process, ensuring their rights are protected. If you’ve received a data breach notification or believe your personal data was exposed, you may be eligible for compensation. Contact Class Action U to learn more about how to join a data breach lawsuit and understand the process of filing.