Cryptopolitan
2025-08-22 09:22:58

Kroll hit with class action over FTX data breach

A class action lawsuit has been filed on financial firm and FTX victim reimbursement handlers Kroll. Creditors claimed that their personal information was leaked in a 2023 data breach, exposing them to phishing attacks. The lawsuit was submitted on Tuesday by Hall Attorneys representing FTX customer Jacob Repko and other affected parties, in a US court for the Western District of Austin, Texas. According to court documents, the breach occurred on or about August 19, 2023, when an unauthorized third party got a hold of a mobile phone number belonging to a Kroll employee. After obtaining the contact, the hackers used it to infiltrate Kroll’s cloud-based systems and obtain files containing sensitive creditor data including customer names, home addresses, email addresses, and balances in the fallen crypto trading platform’s accounts. Kroll issues notice for data breach Kroll confirmed the breach in a notice to creditors, insisting that no FTX passwords or digital assets were compromised. “The attacker might use this information in a further scam, for example, by sending phishing emails to trick you into providing sensitive personal information,” Kroll said at the time. The firm added that other accounts and systems were not impacted and that FTX assets were unaffected. However, Hall attorneys claim the breach has exposed creditors to scam emails and direct financial losses. Repko, the lead plaintiff, told the court that he lost 1.9 ETH in July 2025 after a phishing attack diverted funds he was attempting to transfer into his digital wallet. The complaint also mentioned there were operational problems with the FTX Customer Claims Portal. According to Repko, his Know Your Customer (KYC) status repeatedly toggled between “Verified” and “On Hold/Unverified,” preventing him from uploading the necessary tax forms required for distributions. Per the plaintiff, even after making multiple attempts and writing dozens of support emails, he was unable to resolve the issue. “Because the FTX Portal gates tax-form upload behind ‘KYC Verified,’ Plaintiff cannot complete the final prerequisites; under the confirmed plan and trust communications, claims may be expunged or distributions forfeited if tax forms are not timely uploaded,” the filing read. Daily phishing complaints from creditors According to a Thursday X post made by FTX creditor and activist Sunil Kavuri, creditors have been receiving scam emails nearly every day. Kavuri shared one message he received with his name embedded in the message, alongside several phishing attempts between August 14 and as recent as last Sunday. FTX Creditors now daily receive scam emails impersonating FTX, Bahamas. Just received one few hours ago Full name is included Nicholas has filed a class action for the alleged data breach at Kroll https://t.co/kILxhygv90 pic.twitter.com/GcpEn2pu1I — Sunil (FTX Creditor Champion) (@sunil_trades) August 21, 2025 Other users joined Kavuri with incidents of their own phishing attempt experiences, with one responding that they had also received similar fraudulent messages. The class action demands Kroll to make systemic changes in how it handles creditor’s information, such as including multi-channel notices through both email and physical mail, mailed status-change letters with mandatory cure windows, and the option for creditors to upload tax forms manually without KYC gating. “ This is a servicing case, after a known security incident and impersonation wave, you can’t run deadlines on email-only and offer no mailed confirmations or manual fallback ,” wrote Nicholas Hall, lead counsel for the plaintiffs, in a press statement. Hall also said that eligible participants could receive monetary compensation depending on the court’s ruling, and the case could force operational changes at Kroll. His firm, Hall Attorneys, also operates the beleaguered exchange’s claims website and provides assistance to creditors managing their claims. The smartest crypto minds already read our newsletter. Want in? Join them .

Crypto 뉴스 레터 받기
면책 조항 읽기 : 본 웹 사이트, 하이퍼 링크 사이트, 관련 응용 프로그램, 포럼, 블로그, 소셜 미디어 계정 및 기타 플랫폼 (이하 "사이트")에 제공된 모든 콘텐츠는 제 3 자 출처에서 구입 한 일반적인 정보 용입니다. 우리는 정확성과 업데이트 성을 포함하여 우리의 콘텐츠와 관련하여 어떠한 종류의 보증도하지 않습니다. 우리가 제공하는 컨텐츠의 어떤 부분도 금융 조언, 법률 자문 또는 기타 용도에 대한 귀하의 특정 신뢰를위한 다른 형태의 조언을 구성하지 않습니다. 당사 콘텐츠의 사용 또는 의존은 전적으로 귀하의 책임과 재량에 달려 있습니다. 당신은 그들에게 의존하기 전에 우리 자신의 연구를 수행하고, 검토하고, 분석하고, 검증해야합니다. 거래는 큰 손실로 이어질 수있는 매우 위험한 활동이므로 결정을 내리기 전에 재무 고문에게 문의하십시오. 본 사이트의 어떠한 콘텐츠도 모집 또는 제공을 목적으로하지 않습니다.