Hackers targeted major Wall Street firms with phone-based cyberattacks designed to trick employees. Here’s what happened, why these calls work, and how you can better protect your own online accounts.
Table of Contents
What Happened?
The report, published on August 5, 2026, said some of the world’s largest hedge funds and private equity firms were targeted. Hackers called employees and tried to persuade them to grant system access or share sensitive information.
Point72 Asset Management told investors it had faced an attack, according to a Reuters source. The firm said no customer information was stolen.
Reuters also named Two Sigma Investments and Citadel among the targeted hedge funds. Two Sigma did not respond to a request for comment, while Citadel and Point72 declined to comment.
Although no customer data theft was confirmed, these attacks show how criminals can use personal or workplace details to make their calls sound convincing. Many people do not realize how much information about them may already have been leaked elsewhere.
Checking for leaks can help you understand what criminals may know and prepare for more convincing phishing calls or messages. Futureproof monitors your data for leaks 24/7 and provides simple steps to reduce scam risks.
Who Was Targeted and Was Any Data Stolen?
The reported targets included Point72 Asset Management, Two Sigma Investments, Citadel, and other unnamed financial firms.
Reuters did not say how many employees received calls. It also did not confirm that hackers successfully entered every targeted system.
Point72 said no customer information was stolen during its attack. No confirmed customer data theft was reported at the other firms.
However, criminals often use information from earlier breaches to make phone calls sound believable. A caller who knows your name or workplace may seem trustworthy.
How Hackers Tried to Trick Wall Street Employees
The hackers used phone calls to manipulate employees into helping them access company systems.
This method is called social engineering, which means manipulating a person instead of attacking software directly.
An attacker may pretend to be technical support, a coworker, a bank representative, or another trusted contact.
They may ask for a password, security code, login approval, or remote access to a device.
Reuters noted that the hacker group Scattered Spider has successfully used similar phone tactics. However, Reuters did not connect the group to these attacks.
Detailed information about the calls and attempted system access has not been publicly shared.
Futureproof monitors your information for data leaks 24/7 and guides you with clear steps to keep it safer from scams.
Run a free check
At Futureproof, Kevin explains digital safety in simple words, with clear tips and zero fluff. He holds a degree in information technology and studies fraud trends to keep his tips up-to-date.
In his free time, Kevin plays with his cat, enjoys board-game nights, and hunts for New York’s best cinnamon rolls.
