Apollo Global confirms a breach in cloud platforms
Apollo Global Management reported a July breach in which attackers gained unauthorised access to specific cloud platforms and obtained personal information.

News summary
Apollo Global Management reported a July breach in which attackers gained unauthorised access to specific cloud platforms and obtained personal information. The firm engaged external specialists and offered identity protection to those affected.
The case once again positions identity as the primary control for the cloud. Phishing-resistant MFA, conditional access, and privilege reviews reduce the impact of account-centric attacks.
Source: Reuters — 21 August 2026
What happened
Apollo Global Management disclosed a July breach in which attackers gained unauthorised access to certain cloud platforms and obtained personal information. The firm brought in outside specialists to investigate the incident and offered identity protection to those affected.
The case sits within a wider run of attacks targeting financial firms, where the goal is usually access to accounts and cloud systems rather than exploiting a complex technical vulnerability.
What it teaches about cloud security
The incident again places identity as the main control point in cloud environments. When systems sit outside the traditional perimeter, improper access to an account can have the same effect as a more sophisticated technical breach.
For any company using cloud platforms, the lesson is twofold: strengthen how access is protected and have a plan for detecting and communicating an incident should one occur.
What to review
Controls that reduce the risk of improper access to cloud platforms:
- Phishing-resistant MFA on every account with access to sensitive data.
- Conditional access based on device, location and session risk level.
- Regular privilege reviews, removing access that is no longer needed.
- A defined incident response and communication procedure for breaches.
Frequently Asked Questions
- What kind of information was affected?
- According to the company's disclosure, attackers obtained personal information after gaining unauthorised access to certain cloud platforms.
- How did Apollo Global respond?
- By bringing in outside specialists to investigate the incident and offering identity protection to those affected.
- Which measure reduces this kind of risk the most?
- Phishing-resistant MFA and conditional access, because they make it harder for a stolen credential alone to grant entry to the system.
Concepts mentioned in this article: Cloud · Phishing
At Seintec, we help companies convert these types of technological risks into realistic improvement plans. If you wish to review your situation, contact us and an expert will guide you.
Contact SeintecRelated service
Cybersecurity
We shield your business so it never stops.