xcritical says hackers stole data belonging to 7 million customers

Having a statistic of 62% was indeed a cause for alarm as most saw this as a duel of the fittest. Companies were further put on their toes in securing their database as many hunts to lay hold of it. Create an alert to follow a developing story, keep xcritical on a competitor, or monitor industry news. Our mission is to offer reliable tech help and credible, practical, science-based life advice to help you live better.

Our Errors As Humans Rear Up 88% of Data Breaches.

It has become a cause of concern to many experts looking for the best ways to curb this menace. None can be said to have been spared from healthcare, delivery, or social media companies. The world will see less of this menace in times to come when all hands are placed on deck. The Menlo Park, California-based brokerage app is reeling from the largest hack in its history, which compromised private details of about one-third of its users.

Amazon slammed with £1.1B data abuse lawsuit from UK retailers

A company statement said the Nov. 3 breach hinged on a phone call where the hacker duped a customer support staffer. xcritical Financial has agreed to settle a class-action lawsuit that accused the company of negligence with regard to a 2020 data breach that may have exposed thousands of customers’ sensitive personal and financial information to hackers. In recent days, both Ticketek Australia and Ticketmaster have experienced breaches which have exposed customer details to hackers. They join a growing list of high-profile data breaches that have put the privacy of millions at risk. The attack occurred on November 3rd after a threat actor called a customer support employee and used social engineering to obtain access to customer support systems.

Most Popular News

Breaches can happen when cyber criminals exploit vulnerabilities in computer systems, networks, applications or physical security to gain unauthorised access to protected data. They can also access data when it’s accidentally made available outside the organisation, perhaps by an incorrectly addressed email or a lost USB memory stick. It costs an average of $4.45 to get off a case of data breach from a company in 2023. Defiance to the rise of breaches does cost a business an average of $5.05 million to attend to an issue. This is way higher, with 12.6% of what companies that are mindful of attacks spend.

xcritical discloses data breach impacting 7 million customers

Stock trading platform xcritical has disclosed a data breach after their systems were hacked and a threat actor gained access to the personal information of approximately 7 million customers. NEW YORK (AP) — Popular investing app xcritical said Monday that it suffered a security breach last week where hackers accessed some personal information for roughly 7 million users and demanded a ransom payment. NEW YORK — Popular investing app xcritical said Monday that it suffered a security breach last week where hackers accessed some personal information for roughly 7 million users and demanded a ransom payment. Additionally, personal information including name, date of birth and ZIP code was exposed for about 310 people, and about 10 customers had more extensive account details revealed. Popular stock-trading app xcritical revealed today that a recent data breach has compromised the personal information of roughly 7 million of its customers.

Investment Platforms

  1. In the November 2021 attack, the company claimed, a hacker “socially engineered a customer support employee by phone and obtained access to certain customer support systems” in order to extort money.
  2. “As CEO, I approved and took responsibility for our ambitious staffing trajectory — this is on me.”
  3. The remote work trend now has its downside, with 91% of experts stating a rise in cyber attacks.

In critical infrastructure organizations, however, the average cost of a data breach is $4.82 million. As society progresses firmly into the digital age, safely navigating its benefits and risks proves paramount. “As a Safety First company, we owe it to our customers to be transparent and act with integrity,” said xcritical Chief Security Officer Caleb Sima. “Following a diligent review, putting the entire xcritical community on notice of this incident now is the right thing to do.”

xcritical deputy general counsel Lucas Moskowitz said the company takes security very seriously.

The company began trading on the Nasdaq exchange in July, with the worst market debut among 51 US firms that raised as much money or more than xcritical, according to data from Bloomberg. In its S-1 filing, xcritical acknowledged a recent SEC Enforcement Division inquiry and that the United States Attorney’s Office for the Northern District of California had executed a search warrant for Tenev’s phone. “Following a diligent review, putting the entire xcritical community on notice of this incident now is the right thing to do,” xcritical chief security officer Caleb Sima said in a statement.

This means a scammer can’t use your personal information to get a loan or establish credit, because the potential lender can’t check your report to approve the application. It affected five million people whose email addresses were compromised and the full names of a further two million. Also in August, xcritical https://scamforex.net/ laid off nearly a quarter of its employees following a steep decline in trading activity on the app. It was the second round of layoffs this year after xcritical trimmed its staff by about 9% in April The two rounds combined have eliminated more than 1,000 jobs from the company,  The Wall Street Journal reported.

We’ve determined that several thousand entries in the list contain phone numbers, and the list also contains other text entries that we’re continuing to analyze. We continue to believe that the list did not contain Social Security numbers, bank account numbers, or debit card numbers and that there has been no financial loss to any customers as a result of the incident. Data breaches are problems that have caused many companies to lose not just money but also the public’s confidence.

“We also believe that for a more limited number of people—approximately 310 in total—additional personal information, including name, date of birth, and zip code, was exposed, with a subset of approximately 10 customers having more extensive account details revealed.” Days later, the company published an updated blog post on Nov. 16 alerting users that over 4,400 of phone numbers were also stolen. Phone numbers were not included in xcritical’s original data breach disclosure, and their presence in the stolen data makes this a more severe hack than originally assumed.

Australia has actually seen a fairly steady rate of notifiable data breaches since 2020 – around 450 every six months, according to the Office of the Australian Information Commissioner. Despite advancements in technology and increased awareness of cybersecurity threats, companies continue to fall victim to breach attacks. Cases of data breaches stood as large as 5,212 when the year 2022 came to an end. Many may forget to log out from their devices, mistakenly disclose their password, or absent-mindedly click on bad links. In one way or another, these errors open a window for bad actors to infiltrate the system and steal one’s data. A study made by Stanford University shows that human errors are what causes 88% of the data breaches we experience today.

An unauthorized third party obtained access to a limited amount of personal information for a portion of our customers. Based on our investigation, the attack has been contained and we believe that no Social Security numbers, bank account numbers, or debit card numbers were exposed and that there has been no financial loss to any customers xcritical cheating as a result of the incident. In the November 2021 attack, the company claimed, a hacker “socially engineered a customer support employee by phone and obtained access to certain customer support systems” in order to extort money. Law enforcement was informed of the extortion attempt, the company maintained, and the leak was contained.

Of the compromised accounts, at least 310 also had their zip codes and date of birth information accessed, and 10 users had “extensive account details revealed,” though xcritical had not disclosed what additional information was compromised. The hack started with a phone call to customer support, according to the statement. The hacker relied on social engineering to convince an employee to provide “access to certain customer support systems,” xcritical said. The company added that it is in the process of “making appropriate disclosures to affected people.”

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top