Data breach reported for Jackson National Life Insurance Company

UpGuard Team
UpGuard Team
February 26, 2026

Key Facts: Jackson Data Breach

  • Date reported: February 25, 2026.
  • Unauthorized access identified: January 30, 2026.
  • Target entity: Jackson National Life Insurance Company (jackson.com).
  • Source of breach: Unknown (unauthorized third-party).
  • Data types: Names, contract numbers, and addresses.
  • Status: Confirmed; Jackson National Life Insurance Company has alerted management and relevant accounts to mitigate further disclosures.
  • Severity: Medium; the incident involves the exposure of personal identifiers and contract-specific information, presenting a moderate risk to policyholder privacy.

Start continuous breach monitoring with UpGuard.

What happened in the Jackson data breach?

Jackson (jackson.com) reported a data breach incident on February 25, 2026. No specific threat actor has been identified or named in connection with the event at this time. The organization is currently investigating the scope of the exposure to understand the full extent of the security incident.

On January 30, 2026, Jackson National Life Insurance Company determined that personal information, including names, contract numbers, and addresses, may have been disclosed to unauthorized parties. The incident is classified as medium severity, indicating a moderate risk to the privacy of the affected individuals. The company has alerted management and relevant accounts to mitigate further disclosures and continues to monitor the situation. Security incidents involving personal identifiers typically carry risks of targeted phishing or unauthorized account access.

Who is behind the incident?

The attacker or cause of the incident has not been identified.

Impact and risks for Jackson customers

Customers of Jackson may face increased risks of identity theft or targeted phishing campaigns due to the potential exposure of names and addresses. Contract numbers, if accessed, could be leveraged in fraudulent communications to make scams appear more legitimate to the recipient. Affected individuals should remain vigilant for any unusual account activity or unsolicited contact from parties claiming to represent the company.

Data breaches often lead to long-term credential abuse risks even if passwords were not explicitly mentioned as part of the leak. It is recommended that users monitor their financial statements, update account passwords, and enable multi-factor authentication where available. Proactive transparency from the organization helps users take timely protective actions to secure their digital identities.

How to protect against similar security incidents

Scan your domain for vulnerabilities in minutes

Frequently asked questions

What happened in the Jackson security breach?

On February 25, 2026, Jackson (jackson.com) disclosed a security breach. According to initial reports, the company determined on January 30, 2026, that personal information, including names, contract numbers, and addresses, may have been disclosed.

When did the Jackson breach occur?

The Jackson breach was publicly reported on February 25, 2026. The exact date of the attack has not been disclosed.

What data was exposed?

The investigation confirmed that the compromised data included full names, physical addresses, and insurance contract numbers. While sensitive identifiers like passwords or Social Security numbers were not explicitly listed in the initial disclosure, the exposure of contract numbers remains a significant security concern.

Is my personal information at risk?

If you interacted with Jackson, there's a possibility your personal information could be affected. Similar incidents often involve email addresses, login details, or financial records. Stay alert for updates and take precautionary measures to secure your accounts.

How can I protect myself after this data breach?

  • Update passwords for all associated accounts
  • Enable multi-factor authentication (MFA)
  • Regularly monitor financial statements for unauthorized activity
  • Be cautious of phishing emails or suspicious phone calls
  • Utilize data breach monitoring services

What steps should companies take after being impacted by this breach?

Jackson has stated they are taking the incident seriously, alerting management and accounts to prevent further disclosures. Organizations typically secure affected systems, notify impacted parties, provide guidance on protective actions, and deploy attack surface management tools to prevent future occurrences.

How secure is Jackson Financial Inc.?

Jackson Financial Inc. (jackson.com) is a major American financial services company and one of the largest providers of annuities in the United States.
  • Check icon
    View our free preliminary report on Jackson Financial Inc.’s security posture
  • Check icon
    13 risk factors, including email security, SSL, DNS health, open ports and common vulnerabilities
https://www.jackson.com/
Security ratings
Deliver icon

Sign up for our newsletter

UpGuard's monthly newsletter cuts through the noise and brings you what matters most: our breaking research, in-depth analysis of emerging threats, and actionable strategic insights.
UpGuard customer support teamUpGuard customer support teamUpGuard customer support team

Protect your organization

Get in touch or book a free demo.
Free instant security score

How secure is your organization?

Request a free cybersecurity report to discover key risks on your website, email, network, and brand.
  • Check icon
    Instant insights you can act on immediately
  • Check icon
    Hundreds of risk factors including email security, SSL, DNS health, open ports and common vulnerabilities
Website Security scan resultsWebsite Security scan rating