The company, holding a management liability insurance policy, sought to claim under its third-party crime coverage to recover the outstanding bills from the customers. However, AIG Australia denied the claim, stating that the policy only addressed "direct financial loss" from theft or fraud by a third party, and argued that since the stolen money belonged to customers, the business itself did not suffer a direct loss.
The Australian Financial Complaints Authority (AFCA) reviewed the case and acknowledged the company's loss. However, it determined that the loss did not align with the policy's specific terms. The ruling emphasized that only the company's customers faced direct financial loss, whereas the company experienced an indirect one due to subsequent non-payments.
The AFCA explained that the hack did not meet the company's policy definition of theft, as the stolen funds belonged to the customers, not the business. This discrepancy meant that the policy's electronic and computer crime coverage was not applicable. Additionally, the policy's criteria for "fraudulent act," which required acts of forgery or counterfeiting the insured had acted upon, were not met since the company was unaware of the false invoices.
This case highlights the critical distinction between direct and indirect financial losses in insurance claims, emphasizing the importance of understanding policy terms. For businesses, particularly those prone to cyber threats, it underscores the significance of having insurance coverage that appropriately addresses loss scenarios stemming from such events. It also serves as a cautionary tale of the complexities involved in recovering from cybercrime attacks without adequate protection.
Moving forward, businesses should ensure robust cybersecurity measures to prevent similar email hacks, coupled with clarifying insurance policies for adequate coverage against indirect financial losses as a result of customer fraud. This scenario may lead insurance providers to reevaluate their product offerings, potentially driving the development of more comprehensive cybercrime coverages. Additionally, the financial sector might witness increased discussions on how to formulate clearer policy definitions that align with the evolving nature of cyber threats.
Published:Tuesday, 11th Mar 2025
Source: Paige Estritori
![]() | Australia’s Insurtech Rise: Pioneering Innovation in Insurance 12 Mar 2025: Paige Estritori The Australian insurtech sector is steadily gaining prominence with innovative products aimed at boosting efficiency, security, and customer interaction. According to a recent report titled 'Insurtech Down Under: Trends, Tech and Triumphs,' the sector's growth is accelerating, supported by strategic investments and technological advancements. - read more |
![]() | Hacked Company Loses Insurance Battle Over Customer Payment Scam 11 Mar 2025: Paige Estritori A company recently faced a significant setback after losing an insurance claim dispute related to funds stolen in a fraudulent email scheme. Cybercriminals infiltrated the business's email system, sending out fake invoices that directed clients to pay into a bogus bank account. Consequently, two customers inadvertently transferred a total of $66,148 to the fraudulent account. Attempts to retrieve this money were unsuccessful, and the customers refused further payments to the company. - read more |
![]() | Australia Underwriting Rises to Meet Complex Insurance Challenges 11 Mar 2025: Paige Estritori In an evolving insurance landscape where traditional underwriters are hesitant to cover high-risk scenarios, Australia Underwriting has strategically positioned itself to fill this crucial gap. The company has become recognized for its expertise in handling difficult-to-place insurance risks, often ignored by larger insurers focused on lower-risk ventures. Founded by industry veteran George Vincent, the firm has capitalized on unserved market segments and emerged as a vital player in the Australian insurance space. - read more |