Farmers Insurance Exchange, Farmers Group, Inc., and their subsidiaries and affiliates were noted in a California Attorney General's data security breach list. This appears to be connected to a broader TransUnion data breach that was disclosed in July 2025. The incident involved an exploited Salesforce-linked third-party application, consistent with the ShinyHunters campaign impacting multiple firms.
The breach exposed names, dates of birth, Social Security numbers (SSNs), billing addresses, email addresses, phone numbers, and customer support-related information for an estimated 1.1 million Farmers Insurance customers. While SSNs were confirmed to be exposed, and financial data inferred through billing addresses, no medical data was reported. The exact date of this specific incident remains unclear, as does a specific notification date for consumers or regulators directly from Farmers.
Details can emerge later, and notices may be delayed. It is important to stay informed about any updates concerning this incident.