Skip to main content

US Customers Sue Marriott After Data Breach Affected 500 Million Guests

The lawsuits against Marriott were filed in the US state of Oregon and Maryland.





 US Customers Sue Marriott After Data Breach Affected 500 Million Guests

Marriott flag hangs at the entrance of the New York Marriott Downtown hotel in Manhattan. (Reuters)



San Francisco: 
After customers in the US sued global hotel chain Marriott for exposing their data with one class-action lawsuit seeking $12.5 billion in damages, cyber security experts today asked nearly 500 million affected customers globally to change passwords and take other precautions.
According to a report in ZDNet on Monday, the lawsuits were filed in the US state of Oregon and Maryland.
"While plaintiffs in the Maryland lawsuit didn't specify the amount of damages they were seeking from Marriott, the plaintiffs in the Oregon lawsuit want $12.5 billion in costs and losses," said the report.

Marriott International on November 30 revealed that its guest reservation system was hacked, exposing the personal information of approximately 500 million guests.
According to cyber security experts, questions need to be asked as to how 500 million guests have been affected by this data breach.
"While we''re still only beginning to assess the true extent of the attack, ultimately, the security solutions the Starwood Hotels and Marriott Group had in place clearly weren''t sufficient enough if it allowed an unauthorised third party to get into the system," said David Emm, Principal Security Researcher at Kaspersky Lab.
"The data was encrypted, but the attackers potentially stole the keys too - highlighting that an extra layer of security should have been in place to prevent this from happening. This data breach is now one of the most critical data breaches in history," Emm said in a statement.
The hotel chain said the hack affected its Starwood reservation database, a group of hotels it bought in 2016 that included the St. Regis, Westin, Sheraton, W Hotels, Le Meridien and Four Points by Sheraton.
According to John Shier, Senior Security Advisor, Sophos, the potential fallout from the Marriott''s Starwood data breach should be alarming to anyone who has stayed at a Starwood property in the last four years.
"Not only are guests at risk for opportunistic phishing attacks, but targeted phishing emails are almost certain, as well as phone scams and potential financial fraud," said Shier.
Unlike previous breaches, this attack also included passport numbers for some individuals who are now at increased risk for identity theft.
"At this point, however, it''s unclear what level of exposure each individual victim has been subject to. Until then, all potential victims should assume the worst and take all necessary precautions to protect themselves from all manner of scams," said Sophos.
Be on alert for spearphishing, opportunistic phishing, monitor your financial accounts and change passwords as a precaution, it added.
Marriott said that it reported the breach to law enforcement and was also notifying regulatory authorities. The hotel chain shares witnessed a maximum 8.7 per cent drop after announcing the data breach.

Comments

  1. he fundamental problem I see as someone in the cyber security industry is a lack of priority from the board level down on cyber strategy . Cyber defense is complicated and requires trained, experienced professionals with budgets and the power to implement policy. Cyber defenses must follow a strategy and many security leaders simply don’t have the skills, education, teams and resources to create and implement a cyber defense strategy. Criminals follow strategy and are light years ahead of most companies. Given the general malaise in corporate cyber skills, the criminals will stay that way. Furthermore, cyber insurance premiums are a much better investment than cyber defense. Most breaches are unknown and cause little damage and the real problem with lax cyber defense for most businesses is that you aren’t investing to protect yourself. For every company that takes cyber security seriously, there are hundreds that don’t. This give attackers easy cover and operational bases. Companies that don’t have Marriott size databases aren’t as concerned with security so attackers use these systems at their will.

    very good read, Vibhu.

    ReplyDelete

Post a Comment

Title

Link

https://amzn.to/3isoLUX https://www.amazon.in/gp/product/B082PFY9S7?smid=AT95IG9ONZD7S&psc=1&linkCode=sl1&tag=mywebsit0749e-21&linkId=5108a27204271760a5ba4d6108af7893&language=en_IN&ref_=as_li_ss_tl https://amzn.to/3ist5DR https://amzn.to/3s5ZcMQ

PUBG Mobile Season 4: Release date, season Royale Pass, new features and more

PUBG Mobile Season 4 release date, new features and more: The Battle Royale game, Player Unknown's Battlegrounds for Mobile, will get revamped for its fourth season later this week. PUBG Mobile Season 4 launch, Royale pass, and latest features:  Player Unknown’s Battlegrounds (PUBG) will refresh its mobile version for a fourth season. An update for the same had also been acknowledged by the company through Twitter. The third season of the Battle Royale game, popularly known as PUBG, ended on November 18. Here’s when PUBG Mobile Season 4 starts, and the new features it will bring. PUBG Mobile Season 4: Release date Smartphone gamers will have to wait until November 20 for the new season of PUBG. The global servers for the game are expected to be connected by November 21, which is when all devices are expected to receive access for the same. New and existing players should note that the latest version of PUBG will not take the Season 3 rankings and scores into accoun...

Vision is alive and will defeat Thanos in Avengers Endgame. Here’s how

If the latest fan theory turns out to be true, then Vision's consciousness will give the Marvel superheroes an upper hand and he might be the actual reason behind the Mad Titan's defeat in Avengers: Endgame. Actor Paul Bettany plays Vision in Marvel Cinematic Universe. Vision, played by actor Paul Bettany, might be alive and have a pivotal role in Avengers: Endgame. Infact, he will be instrumental in defeating Thanos in the final battle. But how can that happen, considering Vision was left all cold and grey when Thanos ripped him off the Mind Stone in last year’s blockbuster, Avengers: Infinity War? Going by a new fan theory doing the rounds, there is a catch! Vision is an  android  which was created by Tony Stark and Bruce Banner during Avengers: Age of Ultron. He was brought to life by the Mind Stone stuck on his forehead. In one of the most emotional scenes of Avengers: Infinity War, we saw Scarlet Witch aka Wanda destroying the Mind Stone that ensured Vision bro...

Ways To Earn CryptoCurrency For Free

  Some Websites Are Listed Below For Earning:- 1.  Sphere by Horizen 2. GramFree 3.  Earnabl y 4. Crypto Tab Browser 5. Honey 6. Coinpayu Sphere by Horizen Due to a change of the Application ID in v1.2.6-beta, Windows users upgrading from 1.2.5-beta or earlier or setups with multiple user accounts must uninstall Sphere by Horizen first, using the "Programs" utility from the "Control Panel" before installing any version greater than v1.2.5-beta. Please follow the upgrade guides for  Windows  or  macOS . Latest Version:   v1.2.8-beta For a list of changes implemented in this version, please view the  changelog . Due to significant improvements to data handling, users who took part in version 1.0.1-beta or earlier are advised to create new accounts and restore their wallet seeds. An upgrade mechanism will be included in a future release to remove the requirement on the user to perform this step. User  manual:   https://horizenofficial.atlas...

CISCE Releases ISC/Class 12 Board Exam 2019 Date Sheet

Council for Indian School Certificate Examination (CISCE) has released the date sheet for ISC (Class 12) and ICSE (Class 10) board exam 2019. ICSE 2019 Timetable: ISC Class 12 Exam 2019 Time Table Released New Delhi:  Council for Indian School Certificate Examination (CISCE) has released the date sheet for ISC (Class 12) and  ICSE  (Class 10) board exam 2019 . The exam for ISC or class 12 students will begin on February 4, 2019 and conclude on March 25, 2019. The exams will begin with practical exams which are scheduled from February 4 to February 14, 2019. The Theory component will begin with Economics paper exam on February 15, 2019. The date sheet is also available on the official website. Students can check the detailed exam schedule below.  ISC (Class 12) Board Exam 2019 Schedule February 04, 2019 (9.00 AM): Art Paper 3 (Drawing or Painting of a Living Person) February 05, 2019 (9.00 AM): Physics - Paper 2 (Practical) February 06, 2019 (...

Terrorist Lived 10 km From Site Where He Killed 40 Soldiers In Kashmir

More than 40 people were killed when the Jaish-e-Mohammad terrorist rammed a vehicle loaded with explosives into a CRPF convoy in Jammu and Kashmir's Pulwama. Pulwama attack: Adil Ahmad Dar joined Jaish-e-Mohammad last year. Story Highlights Adil Ahmad Dar, 22, joined terror group Jaish-e-Mohammad last year He was also known as "Adil Ahmad Gaadi Takranewala" Police say he is the third local suicide terrorist recruited by Jaish New Delhi:  Adil Ahmad Dar, the Jaish-e-Mohammad terrorist behind the worst-ever terror attack on security forces in Jammu and Kashmir, lived just 10 km from the spot where he rammed his car full of explosives into a security convoy, killing over 40 Central Reserve Police Force (CRPF) personnel on Thursday. Also known as "Adil Ahmad Gaadi Takranewala" and "Waqas Commando of Gundibagh", he joined the Pakistan-based terror outfit last year. On Thursday, he  drove towards the convoy of 78 CRPF buses tr...

2.0 Box Office Collection Day 1: Rajinikanth And Akshay's Film, Hindi Version, Gets 'Super Start'

2.0 , starring Rajinikanth and Akshay Kumar, collected Rs 20.25 crore on the opening day Rajinikanth in a still from  2.0 . (Image courtesy:  YouTube ) Story Highlights " 2.0 's business is strong," say trade pundits 2.0 opened to favourable reviews on Thursday 2.0 is the sequel to 2010 film Enthiran New Delhi:  2.0 , starring Rajinikanth and  Akshay Kumar , collect a little Rs 20 crore - Hindi version only - on the opening day, reported trade analyst Taran Adarsh. "Non-holiday release, non-festival period and yet,  2.0  takes a super start. Keeping in mind the fact that it's a dubbed film and the advance bookings opened very late, the business is strong. Thu Rs 20.25 crore (Hindi version)," he tweeted. Going by the film's pre-release hype, trade pundits thought  2.0  had a good chance to beat  Thugs Of Hindostan 's opening day collection number (Rs 50 crore in Hindi). However,  Thugs of Hindostan 's box office g...

Network security policy

Network security policy This policy will help you create security guidelines for devices that transport and store data. You can use it as-is or customize it to fit the needs of your organization and employees. From the policy  Summary Every company’s network is made up of devices that transmit and store information. This can include internal and external systems, either company-owned or leased/rented/subscribed to. To protect company data and reputation, it is essential to ensure that the network is secured from unauthorized access, data loss, malware infestations, and security breaches. This must be done via systematic end-to-end controls. Policy details The IT department will be responsible for implementing, adhering to, and maintaining these controls. For the purposes of this document, “all devices” refers to workstations, laptops, servers, switches, routers, firewalls, mobile devices, and wireless access points. Where possible, these guidelines will...