Softpedia
 

NEWS CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
Home > News > Security

June 9th, 2011, 09:54 GMT · By

Citi Admits to Customer Data Breach

SHARE:

Adjust text size:


Hackers break into Citi Account Online
Enlarge picture
Citigroup has admitted that hackers managed to break into its systems and accessed information on about 200,000 North American credit card holders.

The Financial Times reports that the breach was discovered in early May and involved customer names, account numbers and contact information.

However, information that would facilitate fraud or identity theft, such as birth dates, Social Security numbers, credit card expiration dates and CVV codes, were not compromised.

The financial giant said the breach occurred on its Citi Account Online system and affected 1% of its customers. According to the latest public figures, there are 20 million Citi cardholders in North America.

"We are contacting customers whose information was impacted. Citi has implemented enhanced procedures to prevent a recurrence of this type of event. For the security of these customers, we are not disclosing further details," an US Citi spokesman, told Reuters.

While affected customers are not likely to have their credit cards misused directly because of this breach, the exposed information could be used to craft believable phishing attacks aimed at extracting more sensitive information.

"Customers affected by this incident should be on high alert for scams, phishing and phone calls purporting to be from Citibank and their subsidiaries," warns Chester Wisniewski, a senior security advisor at Sophos.

"Considering that the attackers have your name, account number and other sensitive information they are able to provide a very convincing cover story to victims," he adds.

The incident follows other large scale data breaches that involved personal information in recent months. In April, hackers broke into Sony's PlayStation Network (PSN) and stole the personal details of over 76 million customers.

Questions have been raised as to why Citigroup took a month to disclose this incident. There is a general feeling that companies are taking too long to inform customers when their privacy is compromised. US lawmakers are working on federal legislation that would force companies to report breaches in a more timely manner.

TELL US WHAT YOU THINK:

1,426 hits · Link to this article · Print article · Send to friend · Subscribe to news

MUST-READ RELATED ARTICLES:


Citi Plugs Security Hole in iPhone Mobile Banking App

Australian Banks Cancel Credit Cards Following Breach

PSN Users Start Reporting Credit Card Fraud

IEEE Notifies Members About Credit Card Breach

READER COMMENTS:



No user comments yet.
Be the first to express your opinion!
Copyright © 2001-2012 Softpedia. Contact/Tip us at

WindowsGamesDriversMacLinuxScriptsMobileHandheldNews

SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   UPDATE YOUR SOFTWARE   |   ROMANIAN FORUM