Some links on this page are affiliate links: if you buy through them we may earn a commission, at no extra cost to you.
MoneyGram suffered a cyberattack in September 2024 that disrupted online, mobile, agent, and partner services for several days. The company took some systems offline to contain the incident, restored payment-transfer services in stages, and reported complete functionality by September 26. MoneyGram later confirmed that an unauthorized party accessed and acquired personal information belonging to certain consumers. It did not, however, identify the attacker, disclose the initial access method, or publish a definitive total number of affected consumers in the disclosures reviewed for this article.
What happened in the MoneyGram cyberattack?
Customers began experiencing MoneyGram service problems around September 20–21, 2024. MoneyGram initially described the problem publicly as a network outage. The company later acknowledged that the disruption resulted from a cybersecurity issue and took certain systems offline as a protective containment measure.
The incident was more than a website outage. Reporting indicated that online transfers, mobile and web access, in-person transactions through agents, receiving and disbursing remittance proceeds, and some partner access to the MoneyGram platform were affected. Pending transactions could not always be completed or released immediately.
Do these 3 things before closing this tab:
1Scan for outdated or missing drivers - takes under a minute2Clear out junk files and repair common Windows errors3Fix the driver behind crashes, sound loss and screen glitchesMoneyGram subsequently said that an unauthorized party accessed and acquired certain consumers’ personal information between September 20 and September 22. That disclosure changed the incident from a service-availability problem into both a cyberattack and a data-breach event.
#1 Best Overall
- POWERFUL SECURITY KEY: The Security Key C NFC is the essential physical passkey for protecting your digital life from phishing attacks. It ensures only you can access your accounts.
- WORKS WITH 1000+ ACCOUNTS: Compatible with Google, Microsoft, and Apple. A single Security Key C NFC secures 100 of your favorite accounts, including email, password managers, and more.
- FAST & CONVENIENT LOGIN: Plug in your Security Key C NFC via USB-C and tap it, or tap it against your phone (NFC) to authenticate. No batteries, no internet connection, and no extra fees required.
- TRUSTED PASSKEY TECHNOLOGY: Uses the latest passkey standards (FIDO2/WebAuthn & FIDO U2F) but does not support One-Time Passwords. For complex needs, check out the YubiKey 5 Series.
- BUILT TO LAST: Made from tough, waterproof, and crush-resistant materials. Manufactured in Sweden and programmed in the USA with the highest security standards.
MoneyGram’s later financial disclosure said the company worked with external cybersecurity experts, including CrowdStrike Services, coordinated with law enforcement, notified affected stakeholders, and added security safeguards.
Verified timeline
| Date | What happened |
|---|---|
| September 20, 2024 | MoneyGram’s later investigation identified unauthorized activity beginning on this date. |
| September 20–22 | An unauthorized party accessed and acquired certain personal information, according to MoneyGram’s later disclosure. |
| September 21 | MoneyGram publicly described a network outage affecting connectivity to some systems. |
| September 22 | The company took protective steps, including taking certain systems offline. |
| September 23 | MoneyGram acknowledged a cybersecurity issue and began restoring its payment-transfer network. |
| September 24 | Contemporary reporting described a continuing global service disruption without a firm restoration timetable. |
| September 26 | MoneyGram said complete functionality had been restored. |
| September 27 | MoneyGram determined that an unauthorized party had accessed and acquired certain consumers’ personal information. |
| October 7 | MoneyGram publicly disclosed potentially exposed consumer-data categories and said operations had returned to normal. |
Some reports called this a “five-day outage.” That is a useful shorthand for the most visible disruption, but it oversimplifies the recovery. MoneyGram described a phased restoration: payment-transfer network restoration began September 23, while complete functionality was reported on September 26. Availability could also have differed by country, agent, partner, transaction type, or delivery method.
Which MoneyGram services were affected?
The disruption affected several parts of the remittance process rather than one consumer-facing application. Reported effects included:
- Online money transfers.
- Mobile and web access.
- In-person transactions at some agent locations.
- Sending, receiving, and disbursing remittance proceeds.
- Partner access to the MoneyGram platform in some countries.
- Pending transactions that could not immediately be completed or released.
That does not establish that every MoneyGram location or every country was affected in the same way. MoneyGram operates through a large international network, and service availability may vary by corridor, agent, partner connection, and transaction status.
Was the MoneyGram attack ransomware?
MoneyGram did not confirm ransomware. Early coverage treated ransomware as one possibility because taking systems offline is a common containment response. But MoneyGram’s later forensic disclosure said it found no evidence of encryption or ransomware in its environment.
The company also did not publicly identify an attacker or ransomware group in the sources reviewed. The most accurate description is that MoneyGram experienced unauthorized activity and a cyberattack that caused a service outage, while the attack method remains undisclosed.
Rank #2
- POWERFUL SECURITY KEY: The YubiKey 5 NFC is the most versatile physical passkey, protecting your digital life from phishing attacks. It ensures only you can access your accounts
- WORKS WITH 1000+ ACCOUNTS: Compatible with popular accounts like Google, Microsoft, and Apple. A single YubiKey 5 NFC secures 100+ of your favorite accounts, including email, password managers, and more
- FAST & CONVENIENT LOGIN: Plug in your YubiKey 5 NFC via USB and tap it, or tap it against your phone (NFC), to authenticate. No batteries, no internet connection, and no extra fees required
- MOST SECURE PASSKEY: Supports FIDO2/WebAuthn, FIDO U2F, Yubico OTP, OATH-TOTP/HOTP, Smart card (PIV), and OpenPGP. That means it’s versatile, working almost anywhere you need it
- PRIMARY & SPARE KEYS: Just like having a spare house key, we recommend buying two YubiKeys - one for daily use and one as a spare. That way you’ll never get locked out of your accounts
It is important not to confuse the absence of evidence of ransomware with the absence of harm. The incident still caused a major availability interruption and involved unauthorized access to personal information.
Was customer data stolen?
Yes. In its October 7, 2024 update, MoneyGram said an unauthorized third party accessed and acquired personal information belonging to certain consumers. The information varied by individual; the list below does not mean every affected consumer had every category exposed:
- Names.
- Phone numbers.
- Email and postal addresses.
- Dates of birth.
- National identification numbers.
- A limited number of Social Security numbers.
- Copies of government-issued identification, such as driver’s licenses.
- Other identity documents, including utility bills.
- Bank-account numbers.
- MoneyGram Plus Rewards numbers.
- Transaction dates and amounts.
- For a limited number of consumers, criminal-investigation information, including fraud-related information.
MoneyGram’s company announcement and consumer notices are the appropriate sources for determining whether a particular person was notified and which information was involved.
Were MoneyGram’s payment systems compromised?
MoneyGram’s later filing said its investigation found no evidence that attackers compromised the company’s payment-transfer systems or API integrations with third-party agent networks.
That distinction matters. The attack clearly affected system availability and involved access to consumer data, but MoneyGram did not report evidence that attackers altered or controlled the payment-transfer network. “Service outage,” “data access,” and “payment-system compromise” describe different consequences and should not be treated as interchangeable.
Recommended Free Tools
How many people were affected?
The reviewed disclosures do not provide a definitive total number of affected consumers. MoneyGram’s broad scale—tens of millions of users and operations in more than 200 countries and territories—is context, not a breach-impact figure.
Rank #3
- POWERFUL SECURITY KEY: The YubiKey 5C NFC is the most versatile physical passkey, protecting your digital life from phishing attacks. It ensures only you can access your accounts
- WORKS WITH 1000+ ACCOUNTS: Compatible with popular accounts like Google, Microsoft, and Apple. A single YubiKey 5C NFC secures 100+ of your favorite accounts, including email, password managers, and more
- FAST & CONVENIENT LOGIN: Plug in your YubiKey 5C NFC via USB and tap it, or tap it against your phone (NFC), to authenticate. No batteries, no internet connection, and no extra fees required
- MOST SECURE PASSKEY: Supports FIDO2/WebAuthn, FIDO U2F, Yubico OTP, OATH-TOTP/HOTP, Smart card (PIV), and OpenPGP. That means it’s versatile, working almost anywhere you need it
- PRIMARY & SPARE KEYS: Just like having a spare house key, we recommend buying two YubiKeys - one for daily use and one as a spare. That way you’ll never get locked out of your accounts
Readers should therefore be cautious of claims that millions of MoneyGram customers were affected unless those claims are supported by a specific disclosure. MoneyGram said certain consumers were affected and that the categories of information varied by person.
What should MoneyGram customers do?
If you were waiting for a transfer
- Check the transaction status. Confirm whether the transfer was sent, pending, canceled, or released. An outage does not by itself mean that funds were lost.
- Do not immediately send a duplicate transfer. Confirm the original status first to avoid paying twice or creating two payouts.
- Preserve records. Keep confirmation numbers, receipts, screenshots, and communications with an agent or MoneyGram support.
- Use an alternative only when necessary. If funds are urgent, compare the total cost, delivery speed, payment method, and cash-pickup availability of another provider.
- Watch for fake refunds. Unsolicited messages offering a refund or asking for extra identification may be phishing attempts.
Use MoneyGram’s official website or its official support channels rather than links supplied in unexpected emails, texts, or social-media messages.
If your personal information may have been exposed
- Read MoneyGram’s notification carefully. The notice should explain whether you were affected and which information was involved.
- Monitor bank and payment accounts. Pay particular attention to accounts used for MoneyGram transactions and report suspicious activity to the financial institution.
- Review your credit reports. Look for unfamiliar accounts, inquiries, or other changes.
- Consider a credit freeze. A freeze may be appropriate if your Social Security number or government-identification information was involved. Contact Equifax, Experian, and TransUnion directly through their official websites.
- Change reused passwords. This is especially important if a password used with MoneyGram was reused elsewhere. Enable multifactor authentication where available.
- Be alert for targeted phishing. Stolen names, transaction dates, amounts, and identity details can make fraudulent messages sound credible. Do not provide passwords, one-time codes, bank details, or identification documents in response to an unsolicited request.
- Check any offered protection service. MoneyGram’s U.S. reference guide described a historical 24-month Experian IdentityWorks offer for eligible consumers. The reviewed material listed an enrollment deadline of January 31, 2025, so readers should not assume that offer remains available in 2026. Check the current MoneyGram consumer FAQ and the notice sent to you.
Credit monitoring and a credit freeze are not the same. Monitoring can alert you to some activity; a freeze can help prevent new creditors from accessing your frozen credit file. Neither one prevents every form of fraud, including account takeover, impersonation, or misuse of identity documents.
What happened to employee information?
Separate breach notifications indicated that some employee work-related information was also accessed. The listed information included employee names, work email addresses and telephone numbers, job titles and roles, work locations, company usernames, hashed company login passwords, and, in limited cases, personal cellphone numbers.
Employee exposure should be kept separate from consumer exposure because the information was addressed in different notifications and involved different populations.
Independent reader supportYour contribution helps us test, update, and keep practical guides available for everyone.What did the incident cost MoneyGram?
MoneyGram’s later financial statement reported approximately $4.8 million in direct incident-related costs for the year ended December 31, 2024. The figure excluded possible litigation losses. It should not be interpreted as the complete economic effect on customers, agents, partners, or the company.
Rank #4
- POWERFUL SECURITY KEY: The Security Key NFC is the essential physical passkey for protecting your digital life from phishing attacks. It ensures only you can access your accounts.
- WORKS WITH 1000+ ACCOUNTS: Compatible with Google, Microsoft, and Apple. A single Security Key NFC secures 100 of your favorite accounts, including email, password managers, and more.
- FAST & CONVENIENT LOGIN: Plug in your Security Key NFC via USB-A and tap it, or tap it against your phone (NFC) to authenticate. No batteries, no internet connection, and no extra fees required.
- TRUSTED PASSKEY TECHNOLOGY: Uses the latest passkey standards (FIDO2/WebAuthn & FIDO U2F) but does not support One-Time Passwords. For complex needs, check out the YubiKey 5 Series.
- BUILT TO LAST: Made from tough, waterproof, and crush-resistant materials. Manufactured in Sweden and programmed in the USA with the highest security standards.
What the incident means for businesses and agents
For remittance businesses, an outage can interrupt the entire chain from sender authorization to recipient payout. Cybersecurity planning therefore needs to address both confidentiality and availability.
Windows Errors? Fix Them Before They Spread
Repair common Windows errors and clear accumulated junk for a smoother, more stable PC - no reinstall needed.Free scan · no reinstallCrashes, No Sound, or Screen Glitches?
Random freezes, missing sound and display glitches usually trace back to one bad driver. Find and replace yours safely.Free scan · under a minute- Maintain contingency procedures for transaction authorization, payout, and customer communications.
- Keep offline or alternate processes for reconciliation when systems are unavailable.
- Separate public-facing systems from core payment infrastructure where practical.
- Test phased restoration and backlog reconciliation, not only full-system recovery.
- Preapprove notifications that distinguish a service outage from a confirmed data breach.
- Preserve logs and forensic evidence before making broad remediation changes.
- Monitor third-party agent APIs and partner connectivity independently.
MoneyGram’s reported lack of evidence of compromise to payment systems does not make the outage operationally minor. A provider can preserve transaction-system integrity while still losing access to the systems needed to send, receive, verify, or release funds.
If you needed an alternative remittance provider
During a future outage, alternatives may include Western Union, Wise, or Remitly. They are not interchangeable:
- Western Union: May suit recipients who need broad agent coverage or cash pickup.
- Wise: May suit bank-account-based digital transfers, but is not a universal substitute for immediate cash pickup.
- Remitly: May suit recurring consumer remittances where the specific corridor supports the desired delivery method.
Fees, exchange rates, limits, delivery times, identity checks, cancellation rules, and cash-pickup availability vary by sending country, receiving country, amount, funding method, and date. Compare the recipient’s final amount—not just the advertised transfer fee. Switching providers also does not remove identity-theft risks arising from the MoneyGram incident.
The bottom line
MoneyGram’s September 2024 outage was caused by a confirmed cyberattack, not merely a routine network failure. Unauthorized activity occurred from September 20 through September 22; restoration began September 23; and MoneyGram reported complete functionality on September 26. The company later confirmed that certain consumers’ personal information had been accessed and acquired.
Free tools Windows power users keep installed
One-click scans. No signup required.
MoneyGram said it found no evidence of ransomware, encryption, compromise of its payment-transfer systems, or compromise of third-party agent API integrations. It did not publicly disclose the attacker, initial access method, or a definitive number of affected consumers. Customers should rely on direct MoneyGram notices, verify old transfer statuses before resending money, monitor financial accounts and credit, and treat unexpected MoneyGram-related messages as potential phishing.
Quick Recap
Product prices and availability are accurate as of the date/time indicated and are subject to change. Any price and availability information displayed on Amazon at the time of purchase will apply.

