Skip to main content

Encryption-In-Use Technology Would Have Neutralized the Allianz Life Insurance Breach

HACKENSACK, N.J., Aug. 07, 2025 (GLOBE NEWSWIRE) -- Paperclip Inc., a leader in advanced data security and content supply-chain solutions, today confirmed that encryption-in-use technology could have prevented the exposure of sensitive customer data in the recent Allianz Life Insurance data breach, which impacted over 1.4 million U.S. customers.

Allianz Breach Context: What Happened
On July 16, 2025, Allianz Life Insurance reported a massive data compromise following a social engineering attack that targeted a third-party cloud-based customer relationship management (CRM) system. Attackers were able to extract personally identifiable information (PII), including names, addresses, dates of birth, Social Security numbers, and policy identifiers, putting millions at risk for identity theft and fraud.

Although Allianz Life Insurance has not publicly disclosed the specific name of the CRM platform affected, multiple sources including Google’s Threat Intelligence Group (GTIG), Mandiant, and BleepingComputer suggest that Salesforce was likely the targeted system. The breach involved:

  • Voice phishing (vishing) attacks manipulating employees into granting access to Salesforce Data Loader.
  • Threat actor UNC6040 (aka “The Com,” linked to Scattered Spider) targeting Salesforce customers.
  • ShinyHunters launching similar campaigns against Salesforce CRM users.
  • Court documents referencing attacks on “Accounts” and “Contacts” tables, common Salesforce objects.

While Allianz has not officially confirmed the affected CRM, the convergence of threat actor activity, techniques, and technical evidence strongly supports the Salesforce conclusion made by the sources named above.

How Paperclip SAFE Would Have Protected Allianz’s Data
Unlike traditional encryption that only secures data at rest and in transit, Paperclip SAFE® encryption-in-use technology keeps data always encrypted, even while being processed or searched. Its unique combination of shredded data, and strong encryption architecture ensures sensitive information remains unintelligible across every phase of its lifecycle.

Key protections SAFE would have provided:

  • Against Vendor Compromise: Attackers would have accessed only encrypted, shredded fragments rather than usable plaintext.
  • Against Social Engineering: Even with legitimate credentials, any data exports would have remained encrypted and useless.
  • Against Supply-Chain Risk: SAFE’s zero-trust design protects data across vendor ecosystems, ensuring third-party environments cannot expose sensitive information.

“The Allianz breach underscores a critical flaw in today’s data security stack—once attackers gain access, they often gain everything,” said Mike Bridges, President & COO of Paperclip Inc. “We can confidently state that Paperclip SAFE’s Machine Learning surveillance would have shut down the export after the first thousand records, preventing much of the damage done by this type of breach.”

Encryption-In-Use: A New Standard for Data Protection
Encryption-in-Use is the ability to perform calculations upon encrypted data while the data remains encrypted. Active, operational data-in-use is the most valuable data an organization relies upon. As demonstrated by the Allianz breach, in-use data remains the primary target for threat-actors globally.

Paperclip SAFE is designed to exceed compliance mandates and align with global regulatory frameworks, including GDPR, NYDFS 500, DORA, and the upcoming NIST post-quantum cryptography standards. Currently deployed by nine of the top ten U.S. life insurance providers, SAFE is rapidly becoming the industry standard for securing sensitive data across financial services, healthcare, and government sectors.

Key Benefits of Paperclip SAFE

  • Always Encrypted – Data remains encrypted at rest, in transit, and in use.
  • Zero Trust by Design – Compartmentalized architecture limits exposure even in vendor environments.
  • Seamless Integration – Works within existing systems without requiring application redesign.
  • Regulatory Alignment – Built to meet and exceed current and future compliance requirements.
  • Post-Quantum Resistant – Crypto-Agile-by-Design (CAbD) creating an environment meeting both today’s and tomorrow’s threat evolution.

About Paperclip Inc.
Paperclip is a software technology partner that creates data security and operational efficiencies for some of the largest globally recognized brands worldwide.

Paperclip provides enterprises with the most efficient means of secure document capture, processing, and storage of millions of documents for rapidly growing firms and Fortune 1,000 companies worldwide. Paperclip offers an expansive range of cloud based B2B and B2C solutions that eliminate paper to deliver new possibilities in efficiency, communication, and ROI, each customized to specific industry and business goals. For more information, visit paperclip.com.

About SAFE

Paperclip SAFE builds on the foundation of trust and collaboration that Paperclip has established with its security and content management solutions over three decades. Paperclip SAFE utilizes in-depth knowledge of the database and data pipeline to secure all points within the data lifecycle. Nine of the 10 top life insurance carriers in the U.S. are currently protected by Paperclip SAFE. With Paperclip SAFE, outpace threats with data that is always encrypted and always ahead of evolving risk. For more information, visit paperclip.com/safe.

Media Contact
Megan Brandow
Director of Marketing & Communications
Paperclip Inc.
mbrandow@paperclip.com
www.paperclip.com

References
• AP News – Allianz Life confirms data breach affecting majority of 1.4M US customers: https://apnews.com/article/12b991a141c24d3a060642c0d173e0be?utm_source=chatgpt.com
• TechRadar – Allianz Life cyberattack gets worse as company confirms Social Security numbers stolen: https://www.techradar.com/pro/security/allianz-life-cyberattack-gets-worse-as-company-confirms-social-security-numbers-stolen?utm_source=chatgpt.com
• BleepingComputer – Allianz Life among firms targeted in Salesforce attacks: https://www.bleepingcomputer.com/news/security/shinyhunters-behind-salesforce-data-theft-attacks-at-qantas-allianz-life-and-lvmh/?utm_source=chatgpt.com
• BankInfoSecurity – Allianz Life breach tied to CRM compromise: https://www.bankinfosecurity.com/allianz-life-breach-tied-to-crm-compromise-a-29068?utm_source=chatgpt.com


Primary Logo

Stock Quote API & Stock News API supplied by www.cloudquote.io
Quotes delayed at least 20 minutes.
By accessing this page, you agree to the following
Privacy Policy and Terms Of Service.