CSIDB logo
Incident

Kemper Corporation

Incident posture

Attack window
Apr 2026
Location
United States of America
Status
Unknown
CIA posture
Available to members
Updated
2026-08-26 23:45

Linked entities

Victim
Kemper Corporation
Threat actors
1 actor
Sources
2 sources

Timeline

Occurred
Apr 2026
Discovered
Undetermined
Disclosed
Apr 2026
Resolved
Pending

Summary

Kemper Corporation reported a cybersecurity incident after the hacker group ShinyHunters posted alleged data from the company's Salesforce account on the dark web. The attackers claim to have exfiltrated approximately 29 gigabytes of information, including internal corporate documents, employee training materials, employee names, email addresses, and Stripe payment logs containing customer names and transaction amounts. The company confirmed it is aware of the breach, has launched an investigation, and has notified law enforcement. Individuals who received a breach notification may face an increased risk of identity theft and fraud.

Motives

Detailed motive labels are available to members.

0 motives

TTPs

Detailed technique labels are available to members.

1 technique

Description

On April 15, 2026, the hacker group ShinyHunters posted alleged files from Kemper Corporation on a dark web site. The group claimed to have exfiltrated approximately 29 gigabytes of data from the company's Salesforce environment. Kemper Corporation acknowledged the incident on or before April 21, 2026, stating that it was aware of the cybersecurity event and had initiated an internal investigation. The company also reported the matter to law enforcement authorities. The press release announcing the investigation was issued on April 21, 2026 by Edelson Lechtzin LLP.

The disclosed data reportedly included internal corporate documents, employee training materials, employee names, email addresses, and Stripe payment logs that contained customer names and transaction amounts. Individuals who received a breach notification from Kemper Corporation were described as facing an elevated risk of identity theft and fraud. The nature of the exposed information suggests potential misuse for both personal and financial exploitation. No further details about the specific number of affected individuals were provided in the source material.

Kemper Corporation, identified as one of the nation's leading specialized insurers with roughly twelve billion dollars in assets, offers insurance products through its Kemper Auto and Kemper Life brands. Edelson Lechtzin LLP, a national class action law firm with offices in Pennsylvania and California, stated that it is investigating potential class action claims on behalf of persons whose sensitive personal data may have been compromised. The firm indicated that it would evaluate rights and possible claims at no cost to affected individuals. The firm's practice areas include data breach litigation as well as securities, antitrust, ERISA, wage theft and consumer fraud matters.

Sources

Sources available to members: 2 sources.

CSIDB