Language Selection

English French German Italian Portuguese Spanish

Citigroup Says UPS Lost Data

Filed under
Security

Citigroup Inc. on Monday said computer tapes containing account and payment history data, including Social Security numbers, on 3.9 million customers were lost by United Parcel Service Inc.

he disappearance is the latest in a series of reported data breaches involving U.S. companies, including Bank of America Corp. and Time Warner Inc.

New York-based Citigroup said UPS, the world's biggest package carrier, lost the tapes while shipping them to an Experian credit bureau in Texas.

The tapes covered CitiFinancial branch network customers and about 50,000 customers with closed accounts from CitiFinancial Retail Services. Customers of CitiFinancial Auto and CitiFinancial Mortgage are unaffected.

Citigroup, the world's biggest bank, on Saturday mailed a letter to customers about the problem. It said it has received no reports of unauthorized activity, and said there is "little risk" of the accounts being compromised.

"We were moving this using an enhanced security procedure we specified and developed with (UPS)," said Kevin Kessinger, president of Citigroup's North America consumer finance unit, in an interview. "You can imagine how frustrated and disappointed we are that this occurred."

Norman Black, a spokesman for Atlanta-based UPS, said "we sincerely regret that in this case we have not been able to find this package. We did conduct an exhaustive search."

Black said UPS is cooperating with Citigroup, and will "do everything we can to make sure this doesn't happen again."

Full Story.

Just Bull

I think the US Goverment is behind this data theft so they can take away more of our freedoms. They already snuck in a National ID card in a Iraq funding bill. They gonna make us all get chipped with RFID so they can keep track of us someday. Big Brother sucks. Im going to my cabin on the mountain soon.

re: Just Bull

Wouldn't doubt it, but it's probably more like an employee in this case making a quick buck selling it to whomever pays for info like that.

----
You talk the talk, but do you waddle the waddle?

Comment viewing options

Select your preferred way to display the comments and click "Save settings" to activate your changes.

More in Tux Machines

Android N’s navigation buttons could get a face-lift

New Zealand vs Wales Live Streaming

Android Leftovers

IT runs on the cloud, and the cloud runs on Linux. Any questions?

A recent survey by the Uptime Institute of 1,000 IT executives found that 50 percent of senior enterprise IT executives expect the majority of IT workloads to reside off-premise in cloud or colocation sites in the future. Of those surveyed, 23 percent expect the shift to happen next year, and 70 percent expect that shift to occur within the next four years. Read more

Security Leftovers

  • Teardrop Attack: What Is It And How Does It Work?
    In Teardrop Attack, fragmented packets that are sent in the to the target machine, are buggy in nature and the victim’s machine is unable to reassemble those packets due to the bug in the TCP/IP fragmentation.
  • Updating code can mean fewer security headaches
    Organizations with high rates of code deployments spend half as much time fixing security issues as organizations without such frequent code updates, according to a newly released study. In its latest annual state-of-the-developer report, Devops software provider Puppet found that by better integrating security objectives into daily work, teams in "high-performing organizations" build more secure systems. The report, which surveyed 4,600 technical professionals worldwide, defines high IT performers as offering on-demand, multiple code deploys per day, with lead times for changes of less than one hour. Puppet has been publishing its annual report for five years.
  • Over half of world's top domains weak against email spoofing
    Over half of the world's most popular online services have misconfigured servers which could place users at risk from spoof emails, researchers have warned. According to Swedish cybersecurity firm Detectify, poor authentication processes and configuration settings in servers belonging to hundreds of major online domains are could put users at risk of legitimate-looking phishing campaigns and fraudulent emails.