Zappos Breach: Protect Your Information

Zappos recently announced that they had been the victim of a cyber attack and that their 24+ million customers would be contacted about the incident. The database accessed did not include credit card or payment data and Zappos has already performed a reset on customer passwords. The breached information included name, e-mail address, billing and shipping addresses, phone number, the last four digits of a credit card number and/or the cryptographically scrambled password (not actual password).
As we know from earlier articles, passwords, while not a “primary” source of information, can still be quite lucrative for cyber criminals. Given that many people re-use passwords across websites, a stolen password could potentially grant access to banking information or other personally identifiable material used for fraud or identity theft. While Zappos has taken the precaution to encrypt their passwords, encrypted passwords are still sought after by cyber criminals in the hopes that encryption can be broken.
As outlined on Forbes, identity theft is still a threat from this breach and consumers should take precautions to protect their information. From a corporate perspective, a consumer breach this large could compromise business passwords, so it may be a great time to encourage a password reset with renewed training on the importance of password security.
Hosted information protection launched by Verdasys
Verdasys has launched two new managed service offerings for information protection.
IT directors believe consumerisation of IT is overhyped
More than three-quarters of IT directors think the consumerisation of IT is overhyped, but admit to it causing sleepless nights.
Symantec advises users to avoid pcAnywhere as ‘code hack’ story persists
Symantec customers who use its pcAnywhere software have been advised to disable it.
Hosted information protection launched by Verdasys
Verdasys has launched two new managed service offerings for information protection.
IT directors believe consumerisation of IT is overhyped
More than three-quarters of IT directors think the consumerisation of IT is overhyped, but admit to it causing sleepless nights.
Symantec advises users to avoid pcAnywhere as ‘code hack’ story persists
Symantec customers who use its pcAnywhere software have been advised to disable it.
Symantec advises users to stop using pcAnywhere as code hack story persists
Symantec customers who use its pcAnywhere software have been advised to stop using it and disable it.
ISF: consider a cyber resiliency response to protect against ‘unknown unknowns’
Cyber resilience is a matter for the whole business to be involved with and not just the security team.
Businesses will have to report major data breaches within 24 hours under new EC law
Businesses across the European Union (EU) will have to report ‘major’ data breaches within 24 hours.


Categories:
Tags:
