Driver FixRecommendedSound, Wi-Fi or graphics acting up? Check drivers firstFind missing or outdated drivers fast.Check DriversOctober DealsAmazon USOctober deal check: compare before you payAmazon US: current deals, useful picks and tech finds.Check DealsPC HealthRecommendedCrashes, freezes, slowdowns? Check your PC nowSpot repairable issues before they interrupt work.Check PC×
Skip to content
The Finance Base
The Money Desk · Blog
Re:

MoneyGram Cyberattack: What Happened and What Customers Should Know

MoneyGram’s September 2024 cyber incident caused a service outage and led to a later disclosure that certain customers’ personal information was accessed and acquired. Here’s what the company said and what affected customers can do.
From TheFinanceBase Team3 min to read
Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

MoneyGram’s September 2024 cyber incident began as a service outage and was later disclosed as unauthorized access to and acquisition of some customers’ personal information. The company took systems offline to contain the incident; by October 7, it said normal operations had resumed. Its notice lists the types of information that may have been involved and steps affected customers could take, but it does not state how many people were affected.

What happened in the MoneyGram cyberattack?

MoneyGram first publicly described a cybersecurity issue in September 2024. The company said it took protective steps, including taking certain systems offline, and engaged outside experts while coordinating with law enforcement. The disruption temporarily affected money-transfer services. Computer Weekly reported on September 24 that UK Post Office customers could not use MoneyGram online or in branches; that service impact is not evidence that Post Office systems were separately compromised. Computer Weekly’s September 24 report described the incident while its nature was still unclear.

MoneyGram’s October 7, 2024 breach notice supplied the key later detail: the company said an unauthorized third party accessed and acquired information belonging to certain consumers between September 20 and 22. MoneyGram said it determined on September 27 that consumer information had been acquired. The notice does not give an aggregate count of affected consumers.

What information may have been involved?

MoneyGram’s notice says the information varied by affected individual. The categories it lists are:

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.
  • Names, contact information and dates of birth
  • A limited number of Social Security numbers
  • Copies of government-issued identification and other documents, including utility bills
  • Bank account numbers and MoneyGram Plus Rewards numbers
  • Transaction dates and amounts
  • Criminal-investigation information for a limited number of consumers

The list describes information categories, not a profile of every affected person. The notice does not specify which items applied to each individual; use your own notice or contact MoneyGram to establish what information it says was involved in your case. The official MoneyGram Notice of Data Breach, dated October 7, 2024, includes the details and consumer guidance.

How did MoneyGram respond, and are services back?

MoneyGram said it took certain systems offline to contain and remediate the issue, which temporarily affected service availability. In its October 7 notice, the company said: “Our systems are back online and we have resumed normal business operations.”

In an email to stakeholders reported by BleepingComputer on October 5, MoneyGram said it had no evidence that the issue involved ransomware. That is the company’s reported assessment at that point, not a public technical account of how the intrusion occurred. The reviewed public materials do not identify a responsible actor or establish an entry method. BleepingComputer also reported an alleged help-desk social-engineering route based on an unnamed source; it was not confirmed in MoneyGram’s notice, so it should not be treated as established fact.

Independent reader supportYour contribution helps us test, update, and keep practical guides available for everyone.Support on Ko-Fi

What should affected customers do?

MoneyGram advised affected consumers to review account statements, monitor credit reports and be alert for unsolicited communications that use their personal information. These are practical steps whether the exposed details are financial, identity-related or both:

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.
  1. Check your notice. Read any communication from MoneyGram to learn what information it says applied to you and how to enroll in assistance.
  2. Review bank and MoneyGram activity. Look for unfamiliar transactions or account changes, and contact the relevant financial institution promptly if you find something suspicious.
  3. Monitor your credit reports. MoneyGram’s notice points U.S. consumers to their entitlement to one free credit report annually from each of the three nationwide consumer reporting agencies. Review reports for accounts or inquiries you do not recognize.
  4. Be cautious with unexpected messages. A message that cites personal details can still be fraudulent. Avoid clicking links or sharing passwords, verification codes or financial information in response to unsolicited contact.
  5. Use the offered protection if eligible. MoneyGram said affected U.S. consumers were offered identity protection and credit monitoring at no cost for two years. Follow the enrollment instructions in your notice and check its terms and deadline.

MoneyGram’s U.S. Consumer FAQ links to the breach notice and reference guide. The two-year offer described in the notice is for affected U.S. consumers; the available sources do not establish the same offer for customers elsewhere.

MoneyGram incident timeline

Date What was reported
September 20–22, 2024 MoneyGram later said an unauthorized third party accessed and acquired certain consumer information during this period.
September 23–24, 2024 MoneyGram publicly described a cybersecurity issue and protective response; Computer Weekly reported service disruption and the uncertainty around the incident.
September 25, 2024 BleepingComputer reported that a stakeholder email said most systems were operational and transfers had resumed, and that MoneyGram had no evidence of ransomware.
September 27, 2024 MoneyGram said it determined consumer information had been accessed and acquired.
October 7, 2024 MoneyGram’s notice described data categories, consumer guidance and the U.S. assistance offer, and said normal business operations had resumed.

Product prices and availability are accurate as of the date/time indicated and are subject to change. Any price and availability information displayed on Amazon at the time of purchase will apply.

Leave a Reply

Your email address will not be published. Required fields are marked *

What’s actually slowing this PC down?

Pick the symptom - the matching free tool is one click away.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

More post from the Money Desk

  1. The Money DeskBlogTheFinanceBase09 OCT 267 minMortgage Escrow FAQs: Taxes, Insurance, Shortages, and Refunds
  2. The Money DeskBlogTheFinanceBase09 OCT 265 minHow Mortgage Escrow Accounts Work and What Homeowners Pay For
  3. The Money DeskBlogTheFinanceBase09 OCT 265 minHow to Read a Stock Chart, Volume and Market-Cap Data
Recommended PC Tool
Recommended PC Tool
PC Slower Than It Used to Be?Free scan - under a minute
Crashes, No Sound, or Screen Glitches?Free driver scan

Two free Windows tools

One Free Minute Could Fix That PC

Before you go - each of these free tools takes about a minute and tackles what quietly slows a Windows PC down.

Special offer. View Outbyte info, uninstall instructions, EULA, and Privacy Policy.