Close Menu
  • Home
  • News
  • Cyber Security
  • Internet of Things
  • Tips and Advice

Subscribe to Updates

Get the latest creative news from FooBar about art, design and business.

What's Hot

macOS Flaw Lets Standard Users Disable EDR and MDM

June 26, 2026

Crypto Clipper Campaign Abuses Fake Reviews, AI Narrators, and VirusTotal Comments

June 26, 2026

Major Increase in Ransomware Attacks Targeting Europe, Warns Report

June 26, 2026
Facebook X (Twitter) Instagram
Friday, June 26
Facebook X (Twitter) Instagram Pinterest Vimeo
Cyberwire Daily
  • Home
  • News
  • Cyber Security
  • Internet of Things
  • Tips and Advice
Cyberwire Daily
Home»Cyber Security»Data breach at Marquis Software Solutions affected over 780,000 people
Cyber Security

Data breach at Marquis Software Solutions affected over 780,000 people

Team-CWDBy Team-CWDDecember 9, 2025No Comments3 Mins Read
Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
Share
Facebook Twitter LinkedIn Pinterest Email


A data breach affecting more than 780,000 individuals has been confirmed by Marquis Software Solutions, a Texas-based fintech provider that works with over 700 banks and credit unions across the US.

The incident began on August 14, when attackers broke into the company’s network by exploiting a SonicWall firewall vulnerability. After discovering the intrusion, Marquis reportedly shut down affected systems and brought in outside cybersecurity specialists to investigate.

The Marquis review, completed in late October, found that unauthorized actors accessed and copied files containing personal and financial information from certain business customers. 

“Marquis is the most recent example of how third-party concentration poses a systemic danger to the financial services industry,” said Noelle Murata, security engineer at Xcape.

“A single mid-tier vendor sitting in the data flow of numerous banks can instantly create a blast radius on a national scale.”

Although the company has not observed signs of identity theft or fraud linked to the incident, filings show that at least 74 banks and credit unions were impacted.

Read more on SonicWall vulnerabilities: Uptick in Akira Ransomware Actors Targeting SonicWall VPNs

Newly filed notifications across Maine, Texas and Iowa detail how the breach unfolded and how widely its effects spread. 

One now-removed filing from Community 1st Credit Union also suggested Marquis paid a ransom shortly after the attack to stop the data from being leaked, although the company has not addressed this claim.

Information Released By Authorities

The aforementioned filings confirm that customers across multiple states were affected and that similar categories of personal data were involved, including names, addresses, dates of birth, Social Security numbers, taxpayer identification numbers, and bank or card details.

Marquis is offering free credit monitoring and identity protection services for one or two years.

Following the attack, the company also said it introduced a series of security improvements, including:

  • Ensuring all firewall devices are fully patched

  • Rotating local account passwords

  • Deleting unused accounts

  • Enabling multi-factor authentication (MFA) on all firewall and VPN accounts

  • Increasing firewall logging retention

  • Adding VPN lock-out rules for repeated failed logins

  • Applying geo-IP filtering for approved countries

  • Blocking connections to or from known botnet command servers

“The remediation list tells the real story,” commented Suzu Labs CEO, Michael Bell.

“These are all controls that should have been in place before a zero-day was a factor. A zero-day gets attackers in the door, but basic security hygiene determines how far they can go once inside.”

Security researchers have also linked recent SonicWall-related breaches to the Akira ransomware group, though no group has claimed responsibility in this case.

Marquis says the investigation is ongoing and the company has not found evidence that the stolen data has appeared online at the time of writing.



Source

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Previous ArticleClayRat Android Spyware Expands Capabilities
Next Article CISA Adds Actively Exploited XSS Bug CVE-2021-26829 in OpenPLC ScadaBR to KEV
Team-CWD
  • Website

Related Posts

Cyber Security

Major Increase in Ransomware Attacks Targeting Europe, Warns Report

June 26, 2026
Cyber Security

Interview: Shopify CISO Andrew Dunbar on Securing an E-Commerce Giant

June 26, 2026
Cyber Security

Cisco Vulnerability Exploited Months Before Disclosure, Google Warns

June 25, 2026
Add A Comment
Leave A Reply Cancel Reply

Latest News

North Korean Hackers Turn JSON Services into Covert Malware Delivery Channels

November 24, 202522 Views

macOS Stealer Campaign Uses “Cracked” App Lures to Bypass Apple Securi

September 7, 202517 Views

North Korean Hackers Target Crypto Firms with ClickFix and Zoom Lures

April 29, 202610 Views

Why SOC Burnout Can Be Avoided: Practical Steps

November 14, 20259 Views

Cyber M&A Roundup: Cyber Giants Strengthen AI Security Offerings

December 1, 20258 Views
Stay In Touch
  • Facebook
  • YouTube
  • TikTok
  • WhatsApp
  • Twitter
  • Instagram
Most Popular

North Korean Hackers Turn JSON Services into Covert Malware Delivery Channels

November 24, 202522 Views

macOS Stealer Campaign Uses “Cracked” App Lures to Bypass Apple Securi

September 7, 202517 Views

North Korean Hackers Target Crypto Firms with ClickFix and Zoom Lures

April 29, 202610 Views
Our Picks

How the always-on generation can level up their cybersecurity game

September 11, 2025

What if your romantic AI chatbot can’t keep a secret?

November 18, 2025

The quest for greater tech independence

May 19, 2026

Subscribe to Updates

Get the latest news from cyberwiredaily.com

Facebook X (Twitter) Instagram Pinterest
  • Home
  • Contact
  • Privacy Policy
  • Terms of Use
  • California Consumer Privacy Act (CCPA)
© 2026 All rights reserved.

Type above and press Enter to search. Press Esc to cancel.