A 2023 breach of a file-transfer system used by vendor PBI Research Services/Berwyn Group exposed information associated with approximately 2.5 million to 2.7 million Genworth customers or insurance agents and approximately 769,000 CalPERS retirees and beneficiaries. Genworth and CalPERS said their own systems were not affected. The records could include Social Security numbers and other identity or policy information, but the exposed fields varied by person.
Was my Genworth policy information exposed in the MOVEit hack?
It may have been if you were among the affected Genworth customers or agents. In late May and early June 2023, attackers exploited a vulnerability in Progress MOVEit Transfer, a file-transfer application used by PBI Research Services/Berwyn Group. PBI notified Genworth on June 16, 2023, that specific Genworth files had been compromised.
PBI had the information as part of a service that checked death records to confirm whether policyholders had died. Genworth’s affected population included life-insurance, individual and group long-term-care insurance, and annuity customers, as well as insurance agents. The California Attorney General’s breach records list May 29–30, 2023, as the breach dates for Genworth North America Corporation.
Genworth’s public materials and SEC disclosures put the affected population at approximately 2.5 million to 2.7 million customers or agents. Its February 29, 2024, annual-report disclosure said approximately 2.5–2.7 million records, including Social Security numbers, were exposed and obtained by the threat actor. That is a range in the company’s reporting, not a precise count of people who experienced fraud.
Windows Errors? Fix Them Before They Spread
Repair common Windows errors and clear accumulated junk for a smoother, more stable PC - no reinstall needed.Free scan · no reinstallOutdated Drivers Are Slowing You Down
One free scan finds every outdated or missing driver and matches the right update for your exact hardware.Free scan · exact hardware match#1 Best Overall
How many CalPERS retirees were affected by the PBI data breach?
CalPERS reported that personal information involving approximately 769,000 retirees and beneficiaries was affected. PBI used the information to confirm member deaths, a process CalPERS said helps ensure proper payments and prevent overpayments or other errors. CalPERS announced the vendor incident on June 21, 2023, and began mailing impacted members the following day.
| Incident | Reported affected group | Vendor purpose | Internal systems | Notification or protection reported |
|---|---|---|---|---|
| Genworth | Approximately 2.5–2.7 million customers or insurance agents, according to Genworth’s incident materials and 2024/2025 SEC disclosures | Death-record scanning and confirmation | Genworth said none of its information systems or business operations were impacted | Genworth notified the company on June 16, 2023; the California Attorney General’s database lists July 27, 2023, as the reported-notice date |
| CalPERS | Approximately 769,000 retirees and beneficiaries, according to CalPERS’ June 21, 2023, Risk and Audit Committee transcript | Confirming member deaths to support accurate benefit payments | CalPERS said its systems were not impacted | CalPERS began mailing affected members June 22, 2023, and offered free credit monitoring and identity-theft protection |
What personal information did the Genworth breach expose?
Genworth said a customer record could contain one or more of the following:
Rank #2
- Ideal for Gifting
- Ideal for a bookworm
- Compact for travelling
- Social Security number, first and last name, and date of birth
- ZIP code and state of residence
- Policy number, role on the policy (such as annuitant, joint insured, or owner), and general product type
- For a deceased person, city and date of death and the source of that information
Agent records could include a Social Security number, name, date of birth, full address, and preferred full address. The official disclosures do not say every person had every listed field exposed, and they do not give a confirmed count of people who later experienced identity theft or other fraud.
Did the hack get into Genworth or CalPERS systems?
No, according to both organizations. The exploited system was MOVEit Transfer, operated in connection with PBI’s vendor services; Genworth and CalPERS each said their own information systems were not impacted. That distinction does not mean the information held by the vendor was unaffected: PBI told Genworth that specific files were compromised, and CalPERS reported that member information in the vendor process was involved.
Recommended Free Tools
Rank #3
What should I do after receiving a Genworth or CalPERS breach letter?
- Check that the notice is genuine. Use the contact information printed in the letter, not a phone number or link from an unsolicited call, email, or text. Ask the organization to confirm whether the notice applies to you.
- Enroll in the protection offered in your notice. CalPERS said it offered affected members free credit monitoring and identity-theft protection. Follow the notice’s instructions and enrollment deadline, if it lists one. Do not assume an offer applies unless your letter says you are eligible.
- Review credit reports and account activity. Look for unfamiliar accounts, inquiries, address changes, or transactions, and contact the relevant financial institution promptly about anything you do not recognize.
- Consider a fraud alert or credit freeze. Contact the credit bureaus directly to learn how to place either measure. A fraud alert asks creditors to take extra steps to verify your identity; a freeze restricts access to your credit file for most new-credit applications. Choose based on your circumstances.
- Be wary of follow-up requests for sensitive details. Treat unsolicited calls, emails, and messages asking for policy, pension, Social Security, or account information as potential phishing, even if the sender refers to the breach.
Keep the notice and records of calls, enrollment, and any disputed activity. If you suspect identity theft, report the specific activity to the affected institution and follow the reporting steps in your notice.
Quick Recap
Best Value
- It can be a gift option
- Comes with secure packaging
- Helpful in various ways
Rank #4
Product prices and availability are accurate as of the date/time indicated and are subject to change. Any price and availability information displayed on Amazon at the time of purchase will apply.




