View unanswered posts | View active topics It is currently Sun Apr 28, 2024 7:05 am



Reply to topic  [ 1 post ] 
 Watch what you click on emails & attachments ! 
Author Message
Operations Team
User avatar

Joined: Sun Aug 30, 2009 7:41 pm
Posts: 795
Location: Toronto, ON
Reply with quote
Post Watch what you click on emails & attachments !
Quote:
Canadians among those hit by massive email hack
April 04, 2011

Lesley Ciarula Taylor
TheStar.com

Canadians are among the millions of people whose email addresses have been stolen in a massive security breach.

Customers of Best Buy Canada, TiVo Inc. and online booksellers Abe Books are among the growing list of people now exposed to possible spam attacks and efforts to extract their confidential information.

“The only information that has been exposed was your name and email address,” Best Buy Canada warned customers in an email. “Account details, passwords or any other person information were not at risk.”

Hackers stole the addresses from a firm called Epsilon, which acts as an email provider for 2,500 companies. Epsilon describes itself as the world’s largest permission-based email marketing provider.

Epsilon spokeswoman Jessica Simon declined to say if any other Canadian clients of the Dallas-based email provider have been hit.

“We’re conducting a full investigation. I can’t give you any specifics,” she told the Star.

Epsilon started alerting customers Friday, but new breaches continue to be found. The first breach occurred March 30, the company’s brief email said on Friday.

“It is possible that you may receive spam email messages as a result and we would advise you to be very cautious when opening links or attachments,” the Best Buy warning said, in language nearly identical to the other companies’ customer warnings.

The breach so far has also hit major U.S. banks and credit-card companies, including Capital One, Barclays Bank, U.S. Bancorp, Citigroup, and JPMorgan Chase I Co., drugstore Walgreen Co., LL Bean Visa Card, hotel chains Ritz-Carlton and Marriott Rewards, Home Shopping Network, Brookstone, Disney Destinations and New York & Company clothing store.

At least one online magazine, McKinsey Quarterly, was also exposed. Customers of Abe Books also said they were notified.

The 7 million students involved with the U.S. College Board are also vulnerable.

The stolen email addresses could be used in “phishing” attacks in which hackers use legitimate-looking emails to fish for account login information.

Since the hackers have the email addresses but not access to the companies’ “from” addressed, a “phishing” attack will have a modified sender.

Epsilon, a unit of Alliance Data Co., handles more than 40 billion emails a year for its companies, including seven of the top-10 Fortune companies, according to its website.

“Being able to send a targeted phishing message to a bank customer and personally address them by name will certainly result in a much higher ‘hit rate’ than a typical ‘blind’ spamming campaign would yield,” Internet security website SecurityWeek.com said. “So having access to this information will just help phishing attacks achieve a higher success rate.”

:evil:

_________________
'14 Crystal Red Tintcoat Camaro SS RS Coupe

Former G8 owner :(

RIP Sunday, Oct 6, '13
1 of 3,681 in Panther Black Metallic '09 Pontiac Pontiac G8 GT (with L76 6.0L small block V8 engine & a 6L80 tranny)

1 of 970 '09 Pontiac G8 GT's in the country (Canada)


Mon Apr 04, 2011 11:28 pm
Profile
Display posts from previous:  Sort by  
Reply to topic   [ 1 post ] 

Who is online

Users browsing this forum: No registered users and 2 guests


You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot post attachments in this forum

Search for:
Jump to:  
cron
Powered by phpBB © 2000, 2002, 2005, 2007 phpBB Group.
Designed by STSoftware for PTF.