2026 Sanlam — third-party project-management provider breach; client PII (Jul 14 disclosure)
Data compromised
Sanlam client personal data in affected provider system may include name, surname, South African ID number, email address, and contact number—specific victim count not publicly disclosed
Technical writeup
On July 14, 2026, Sanlam confirmed to News24 that personal data belonging to several clients was exposed in an incident affecting a third-party project and task management system—not Sanlam's own technology environment. News24 surfaced the event after a LinkedIn post appeared to show a Sanlam Corporate member notice; Sanlam's official LinkedIn account confirmed the communication was authentic. Sanlam said affected information may include name, surname, ID number, email address, and contact number, but did not publish a total affected-client count or incident date at indexing time. The insurer reported activating incident response with the provider, independent cybersecurity experts, and internal risk teams; informing South Africa's Information Regulator; and no indication yet that affected information was shared publicly or used unlawfully. BreachHistory indexes recordsAffected 0 until an attested count emerges.
Root cause
Breach at a third-party project/task-management service provider used by Sanlam (per company confirmation to News24)