Connect with us

Hi, what are you looking for?

Business

Macy’s suffers data breach, customer data affected (Includes interview)

Major U.S. retailer Macy’s has suffered from a data breach, linked to a Magecart card-skimming code which collected customers’ first and last names, addresses, phone number, emails and payment card information. The company has said credit-card information and other data entered on the checkout page was captured by hackers. Consequently to the issue, which took place during October 2019, Macy’s has now said the issue has been resolved.

To look more closely into the data breach, Vinay Sridhara of Balbix explains to Digital Journal readers why enterprises must scan and monitor all attack vectors across connected applications such as online payment portals as well as all third-party systems to detect vulnerabilities and mitigate future breaches such as this.

According to Vinay Sridhara (Balbix), the retailer has responded appropriately: “Macy’s has taken the appropriate steps to contain and mitigate this data-stealing campaign, including quick notification of the breach as well as quick action to remove the code. ”

However, he notes: “Still, the malicious code went unsuspected for a week.”

And this type of issue is a consequence of the expansion of digital technology: “All that constitutes IT infrastructure is rapidly expanding and Gartner predicts that by 2020, the total number of connected things will reach 20.4 billion.”

This means: “It is critical that Macy’s implement security solutions that scan and monitor all attack vectors across connected applications such as online payment portals as well as all third-party systems to detect vulnerabilities that could be exploited.”

Sridhara notes that businesses need to go about: “proactively identifying and addressing vulnerabilities that would put customers’ personally identifiable information at risk of exposure, will enable enterprises to mitigate future breaches and avoid litigation, fines under data privacy laws, retain brand image and increase the organizations’ market share.”

In terms of preventative strategies, Sridhara recommends that it is “imperative that large enterprises such as Macy’s leverage advanced security tools that employ artificial intelligence and machine learning to identify and analyze the tens of thousands of data signals in real-time and prioritize vulnerabilities.”

He adds that: “An online payment portal’s database contains huge swaths of sensitive customer information and is pivotal to the businesses success, making any vulnerability in its security strategy highly prioritized. Instead of reacting to a security incident a week after it occurs, enterprises must invest and adopt in modern security platforms to proactively manage risk based on business criticality to strategically and effectively protect their customers’ data.”

Avatar photo
Written By

Dr. Tim Sandle is Digital Journal's Editor-at-Large for science news. Tim specializes in science, technology, environmental, business, and health journalism. He is additionally a practising microbiologist; and an author. He is also interested in history, politics and current affairs.

You may also like:

Tech & Science

Autonomous vehicles rely on photonics-powered LiDAR (light detection and ranging) systems. Is this technology essential for a 'smart city'?

Tech & Science

Russia-born Pavel Durov founded the Telegram. — © AFP/File Jason RedmondTelegram founder Pavel Durov has been allowed to temporarily leave France, where he is...

News

“The strong man” is now making himself look very much like “the wrong man.”

Business

New US tariffs against China come in force prompting Beijing to vow counter-measures. - © AFP STRTariffs are taking center stage as President Donald...