Skip to content

Ameriprise

Disclosed May 26, 20264 months ago502,597 accountsUnverified

In March 2026, the financial services firm Ameriprise Financial was named by the ShinyHunters group in a "pay or leak" extortion campaign . The group claimed possession of more than 200GB of compressed data exfiltrated from Ameriprise's Salesforce environment and internal SharePoint infrastructure, and subsequently published the data after negotiations allegedly failed. The published data contained 500k unique email addresses as well as names, phone numbers, physical addresses and employer information. In their disclosure to state attorneys general , Ameriprise reported 47,876 affected people;

What is known

People affected502,597 (accounts in the leaked data, per Have I Been Pwned)
DisclosedMay 26, 2026
HappenedMar 2, 2026
AttackExtortion
Data exposedEmails, Employment, Financial, Names, Phone numbers, Addresses
SectorTech
StatusUnverified: not yet confirmed by an official notice, a filing or the organization
Check your emailHave I Been Pwned

Sources

Source
Have I Been Pwned: Ameriprisehaveibeenpwned.com · Aggregator

Notices filed

WhereFiledPeople
Have I Been Pwnedaccounts in the dataMay 26502,597

Other breaches at Ameriprise

BreachAffected
Laptop stolen from employee's car held data of 260,000 Ameriprise clientsDec 25, 200520 years agoLost or stolen deviceUnverified260K
History of this record
  • 2026-09-25 · added · backfill source

First seen 2026-09-25 (Have I Been Pwned). Record counts are as reported. Not legal advice.

Everything about Ameriprise

New breaches by email

Wednesdays, only in weeks with newly disclosed breaches, the largest first.

Double opt-in. Unsubscribe any time.