• Menu
  • Skip to main content
  • Skip to primary sidebar

The Cyber Security News

Latest Cyber Security News

Header Right

  • Latest News
  • Vulnerabilities
  • Cloud Services
Capital 1 Fined $80 Million For 2019 Knowledge Breach Affecting

Capital 1 Fined $80 Million for 2019 Knowledge Breach Affecting 106 Million Consumers

You are here: Home / General Cyber Security News / Capital 1 Fined $80 Million for 2019 Knowledge Breach Affecting 106 Million Consumers
August 7, 2020


A United States regulator has fined the credit score card supplier Money Just one Economical Corp with $80 million about past year’s details breach that uncovered the private info of more than 100 million credit card applicants of People.
The good was imposed by the Office environment of the Comptroller of the Currency (OCC), an independent bureau inside the United States Section of the Treasury that governs the execution of rules relating to nationwide banking institutions.
In accordance to a press release printed by the OCC on Thursday, Funds 1 failed to set up ideal hazard administration ahead of migrating its IT operations to a public cloud-based mostly service, which integrated appropriate style and implementation of specified network security controls, enough data loss avoidance controls, and helpful dispositioning of alerts.cybersecurity
The OCC also mentioned that the credit score card supplier also left various weaknesses in its cloud-based mostly data storage in an inner audit in 2015 as very well as failed to patch security vulnerabilities, violating the “Interagency Pointers Establishing Facts Security Requirements,” that all US banking institutions ought to comply with.
These unsafe and poor security techniques resulted in a large details breach previous calendar year when a solitary hacker was ready to steal credit score card information of above 106 million Money One particular customers.
Capital One Hacker

Moreover credit rating card info, the hacker also managed to steal approx 140,000 Social Security quantities and 80,000 bank account numbers connected to US clients, and 1 million Canadian Social Insurance policies quantities.
The hacker, determined as previous Amazon web solutions employee Paige Thompson a.k.a erratic, 33, was arrested adhering to the breach and billed with computer system fraud and abuse, which carries up to five years in jail and a $250,000 wonderful.
The breach occurred just after Thompson allegedly exploited a misconfigured firewall on Money One’s Amazon Web Providers cloud server in March and unauthorizedly stole much more than 700 folders of info saved on that server.
In addition to the civil money penalty of 80 million pounds, the OCC also ordered Funds A single Finance to boost its cybersecurity security defenses and submit a plan to the OCC within 90 times outlining how it intends to do so.
Discovered this post interesting? Observe THN on Facebook, Twitter  and LinkedIn to read through more special content we put up.

Previous Post: «Evasive Credit Score Card Skimmers Making Use Of Homograph Domains Evasive Credit score Card Skimmers Making use of Homograph Domains and Contaminated Favicon
Next Post: #BHUSA: Scientists Reveal Attacks Versus Email Sender Authentication Cyber Security News»

Reader Interactions

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Primary Sidebar

Report This Article

Recent Posts

  • New HTTPBot Botnet Launches 200+ Precision DDoS Attacks on Gaming and Tech Sectors
  • Top 10 Best Practices for Effective Data Protection
  • Researchers Expose New Intel CPU Flaws Enabling Memory Leaks and Spectre v2 Attacks
  • Fileless Remcos RAT Delivered via LNK Files and MSHTA in PowerShell-Based Attacks
  • [Webinar] From Code to Cloud to SOC: Learn a Smarter Way to Defend Modern Applications
  • Meta to Train AI on E.U. User Data From May 27 Without Consent; Noyb Threatens Lawsuit
  • Coinbase Agents Bribed, Data of ~1% Users Leaked; $20M Extortion Attempt Fails
  • Pen Testing for Compliance Only? It’s Time to Change Your Approach
  • 5 BCDR Essentials for Effective Ransomware Defense
  • Russia-Linked APT28 Exploited MDaemon Zero-Day to Hack Government Webmail Servers

Copyright © TheCyberSecurity.News, All Rights Reserved.