DataBreaches.Net

Menu
  • About
  • Breach Notification Laws
  • Privacy Policy
  • Transparency Report
Menu

Singapore Airlines experiences security breach, personal information of more than 280 KrisFlyer members disclosed

Posted on January 6, 2019 by Dissent

Hana Otsuka reports:

 Due to a software bug experienced by Singapore Airlines, the private information of more than 280 KrisFlyer members were disclosed to other members. Some even had their passport numbers shared to strangers.


KrisFlyer member Tricia Leo noticed something was off when she logged into her account on January 5, Saturday. She saw a different email address on her profile page and after refreshing her login, she was able to see the anonymous person’s entire history, upcoming trips, miles and other information. She tried calling Singapore Airlines to inform them of the incident but was merely advised to log off for 24 hours since they were “upgrading their system”. According to Ms. Tricia, “the officer didn’t even bother with the offer of a report of what happened till I asked.” This is a serious security breach of personal information and it was unusual that the airlines’ initial reaction was quite complacent.

Read more on The Independent (SG).

Category: Business SectorExposureNon-U.S.

Post navigation

← A former NSA contractor accused of stealing a treasure trove of data offers to plead guilty to data theft
Mom shocked to find driver’s license on metro Atlanta school website: Turns out, she’s not the only one →

Now more than ever

"Stand with Ukraine:" above raised hands. The illustration is in blue and yellow, the colors of Ukraine's flag.

Search

Browse by Categories

Recent Posts

  • Ransomware Attack on ADP Partner Exposes Broadcom Employee Data
  • Anne Arundel ransomware attack compromised confidential health data, county says
  • Australian national known as “DR32” sentenced in U.S. federal court
  • Alabama Man Sentenced to 14 Months in Connection with Securities and Exchange Commission X Hack that Spiked Bitcoin Prices
  • Japan enacts new Active Cyberdefense Law allowing for offensive cyber operations
  • Breachforums Boss “Pompompurin” to Pay $700k in Healthcare Breach
  • HHS Office for Civil Rights Settles HIPAA Cybersecurity Investigation with Vision Upright MRI
  • Additional 12 Defendants Charged in RICO Conspiracy for over $263 Million Cryptocurrency Thefts, Money Laundering, Home Break-Ins
  • RIBridges firewall worked. But forensic report says hundreds of alarms went unnoticed by Deloitte.
  • Chinese Hackers Hit Drone Sector in Supply Chain Attacks

No, You Can’t Buy a Post or an Interview

This site does not accept sponsored posts or link-back arrangements. Inquiries about either are ignored.

And despite what some trolls may try to claim: DataBreaches has never accepted even one dime to interview or report on anyone. Nor will DataBreaches ever pay anyone for data or to interview them.

Want to Get Our RSS Feed?

Grab it here:

https://databreaches.net/feed/

RSS Recent Posts on PogoWasRight.org

  • Massachusetts Senate Committee Approves Robust Comprehensive Privacy Law
  • Montana Becomes First State to Close the Law Enforcement Data Broker Loophole
  • Privacy enforcement under Andrew Ferguson’s FTC
  • “We would be less confidential than Google” – Proton threatens to quit Switzerland over new surveillance law
  • CFPB Quietly Kills Rule to Shield Americans From Data Brokers
  • South Korea fines Temu for data protection violations
  • The BR Privacy & Security Download: May 2025

Have a News Tip?

Email: Tips[at]DataBreaches.net

Signal: +1 516-776-7756

Contact Me

Email: info[at]databreaches.net

Mastodon: Infosec.Exchange/@PogoWasRight

Signal: +1 516-776-7756

DMCA Concern: dmca[at]databreaches.net
© 2009 – 2025 DataBreaches.net and DataBreaches LLC. All rights reserved.