关于我们

Robinhood data breach exposes 7 million users' personal information

字号+ 作者:668影视网电视剧大全 来源:行业动态 2024-09-22 17:36:59 我要评论(0)

It's incidents like this that keep us doing those annoying security trainings every year.Robinhood h

It's incidents like this that keep us doing those annoying security trainings every year.

Robinhood has announced a data breachrevealing around 7 million users' information after an employee was tricked into providing a hacker with access to internal systems.

The security breach occurred on Nov. 3, and involved an unauthorized person simply calling up the investing app's customer support. The caller then tricked a Robinhood employee into granting them access to sensitive user information, and managed to collect around 5 million people's emails and the full names of around 2 million more.

That's bad enough already, but it gets worse. Robinhood also revealed that around 310 people had further personal information exposed, including their names, dates of birth, and zip codes. Ten of these customers had even more details of their account revealed, but Robinhood did not reveal exactly what information this entailed. Fortunately, Robinhood believes no Social Security numbers, bank account numbers, or credit card numbers were among the information stolen.

You've kinda gotta respect the social engineering skill. Most of us would assume that a person authorized to access private user data probably wouldn't call the public-facing customer support number.

Mashable Light SpeedWant more out-of-this world tech, space and science stories?Sign up for Mashable's weekly Light Speed newsletter.By signing up you agree to our Terms of Use and Privacy Policy.Thanks for signing up!
SEE ALSO:The 8 best investing app alternatives to Robinhood

The malicious actor attempted to extort a payment out of Robinhood, though the company declined to reveal to Mashable the amount demanded or if they'd actually paid it. However, a Robinhood spokesperson did tell Mashable the company will continue requiring security training for its employees, including educating them on social engineering attacks, and it is "working to implement new security countermeasures."

Robinhood further noted in its press release that law enforcement has been informed, and the incident is being investigated by security firm Mandiant. The company is also in the process of disclosing the breach to impacted users.

"Following a diligent review, putting the entire Robinhood community on notice of this incident now is the right thing to do," said Robinhood Chief Security Officer Caleb Sima in a post on the company's official blog.

Unfortunately, there isn't much you can do to protect yourself from such violations. If you provide your information to a company, which is then tricked into giving it to a hacker, that's on them.

If you want to be part of the solution, complete your annoying work-mandated data security training, and hopefully you won't make the same mistake this Robinhood employee did.

1.本站遵循行业规范,任何转载的稿件都会明确标注作者和来源;2.本站的原创文章,请转载时务必注明文章作者和来源,不尊重原创的行为我们将追究责任;3.作者投稿可能会经我们编辑修改或补充。

相关文章
  • 21 Unexpected Wonders in Colorado’s Vibrant Cities and Small Towns

    21 Unexpected Wonders in Colorado’s Vibrant Cities and Small Towns

    2024-09-22 17:17

  • 测产数据“做手脚” 种子公司被罚8万元丨关注水稻测产乱象④

    测产数据“做手脚” 种子公司被罚8万元丨关注水稻测产乱象④

    2024-09-22 17:10

  • 关键时刻 常态地震应急演练 保障师生有序撤离

    关键时刻 常态地震应急演练 保障师生有序撤离

    2024-09-22 17:08

  • 《中国作家》杂志 刊发芦山地震中篇报告文学

    《中国作家》杂志 刊发芦山地震中篇报告文学

    2024-09-22 15:47

网友点评