New York State Department of Financial Services · NY
First American Financial & Email Vigilance
December 27, 2023
Summary
The NYDFS issued an advisory following a cybersecurity incident at First American Financial Corporation. Entities must exercise heightened caution regarding emails originating from First American systems, as they may contain malicious links or attachments.
Industry Letter
Date: December 27, 2023
To: Chief Information Security Officers
Subject: First American Financial & Email Vigilance
While you may already be aware of the cybersecurity incident impacting First American Financial Corporation (First American), the New York State Department of Financial Services (DFS) brings to your attention a related warning issued by First American regarding emails from its systems.
On December 21, First American announced it had discovered unauthorized activity on certain of its information technology systems. First American further reports that it has isolated its systems, including its email server, and warns from its update site (www.firstamupdate.com) that, at this time, “any recipient of an email purporting to be from First American, First American Title or from FirstAm.com should be vigilant about cybersecurity risks and avoid clicking on unknown or suspect links.”
Now and always, it is important to remind personnel to remain cautious and vigilant when handling emails containing links and attachments as these may carry malicious payloads or lead users to malicious websites.
Take care, be vigilant, and have a safe holiday season.
Common questions
- What does "First American Financial & Email Vigilance" cover?
- The NYDFS issued an advisory following a cybersecurity incident at First American Financial Corporation. Entities must exercise heightened caution…
- Which agency issued this update?
- This update was issued by New York State Department of Financial Services.
- When was it published?
- It was published on December 27, 2023.
Related updates
- Lakeview Loan Servicing, LLC, Pingora Loan Servicing, LLC, Community Loan Servicing, LLC, and Bayview Asset Management, LLC Multistate Settlement Agreement and Consent Order issued by the Division of Banking
- Pionex, Inc. Consent Order issued by the Division of Banking
- Two Ocean No-Action Letter: Digital Asset Custody & Qualified Custodian Status
- Ultralight FS,. Inc., formerly known as Obopay, Inc., also doing business as Obopay USA
- Updated Nonbank Ransomware Self-Assessment Tool (R-SAT)
- ACI Payments, Inc. Settlement Agreement and Consent Order issued by the Division of Banking