No, Human Resource Advantage. You do not get to put an unencrypted thumb drive with employee records in the regular mail to TrustHCS and then claim you take the security of personal information in your control “very seriously.” From your own investigation, that drive contained names, Social Security numbers, dates of birth, bank account information, postal…
Category: Business Sector
NY: Colonial Car Wash credit breaches investigated
Keshia Clukey reports: Rotterdam police Sunday warned the public about several debit and credit card breaches that occurred at the Colonial Car Wash starting in early March. Police were contacted by managers from M&T Bank, First Niagara and Price Chopper Federal Credit Union that there were several victims who had fraudulent activity on their accounts after using their cards at…
UK: ICO to make enquiries about sale of pension data
From the ICO: Allegations have been made about firms passing on sensitive financial data, including pension information, which is being used by cold calling companies. An ICO spokesperson said: “We’re aware of allegations raised against several companies involved in the cold calling sector, and will be making enquiries to establish whether there have been any…
British Airways frequent-flyer accounts hacked
The Press Association reports: Hackers have accessed tens of thousands of British Airways frequent-flyer accounts. The airline said no personal information had been viewed or stolen and it had frozen affected accounts while it resolves the issue. It means top executive club flyers may not be able to use their points until the issue is resolved. Read…
UK: Multiplay Servers Hacked
Ashley Allen writes: Reports have emerged that Multiplay’s servers have been hacked. Members have received e-mails from Multiplay warning them that unauthorised access of their servers may have compromised user accounts, advising them to protect their personal information and to change their passwords Read more and see the the Multiplay email to users on eTeknix Multiplay…
Nite Ize notifies consumers after hack at services provider
I really don’t understand why businesses that have had customer data hacked at their hosting provider do not name the host or third party. Why shield them from bad publicity when their security failure led to the business taking a reputation hit? Here’s another example, this one from Nite Ize, who was notified of a breach…