LCBO confirms malware attack, customer info may be compromised

LCBO found that “unauthorized persons” had embedded malicious code on their websites to obtain personal customer information such as addresses and credit card numbers.

The Crown Company said customers who purchased products through the store’s online platform between January 5 and January 10 may have had their personal data compromised.

“This may include your name, email and mailing address, Aeroplan number, LCBO.com account password, and credit card information,” LCBO said in a Thursday press release.

LCBO said the incident did not affect orders placed through its mobile app.

LCBO is just one of several government agencies facing technical difficulties this week. In December, a ransomware attack shut down the hospital’s network systems and took weeks to fully recover.

On Tuesday, Toronto’s University Health Network experienced a “Code Gray” outage of its computer systems. Similarly, the U.S. Federal Aviation Administration delayed flights Wednesday morning after a communication system outage.

LCBO temporarily disabled its website and mobile app mid-afternoon Tuesday to contain the cybersecurity incident, preventing customer access, the company said.

After a “thorough review and testing,” LCBO says the website and mobile app have been fully restored and have enhanced security features.

All LCBO account passwords have been reset by the company and registered customers are being asked to reset their passwords upon login.

LCBO continues to identify affected customers and advise customers who purchase online to monitor their credit card statements for unusual activity.

With file by Isaac Phan Nay.

join the conversation

Conversation is the opinion of the reader, Code of conduct. Star does not endorse these opinions.

Source link

Leave a Reply

Your email address will not be published. Required fields are marked *