Educating millennials and Generation Z
Read Time: 7 mins
Written By:
Patricia A. Johnson, MBA, CFE, CPA
The first indication that a retail company had been a victim of a security breach occurred in early 2023 when a customer complained that her account had been changed without her authorization. This incident set into motion an investigation that lasted five months and involved the company’s web development team, information technology and security specialists, and external forensic specialists. Ultimately, the company’s team of investigators determined that the breach hadn’t been caused by ransomware or business email compromise. Instead, investigators found unauthorized tracking technologies on the company’s website that’d been siphoning customers’ personal data to a third-party broker who then sold the data, including customers’ usernames, passwords, purchasing habits and credit card information. According to investigators, a previously undetected coding vulnerability in the company’s system invited the data breach, allowing malicious actors to inject cookies into the company’s website and collect and transfer data to an external database.
Unlock full access to Fraud Magazine and explore in-depth articles on the latest trends in fraud prevention and detection.
Read Time: 7 mins
Written By:
Patricia A. Johnson, MBA, CFE, CPA
Read Time: 12 mins
Written By:
Roger W. Stone, CFE
Read Time: 6 mins
Written By:
L. Christopher Knight, CFE, CPA
Read Time: 7 mins
Written By:
Patricia A. Johnson, MBA, CFE, CPA
Read Time: 12 mins
Written By:
Roger W. Stone, CFE
Read Time: 6 mins
Written By:
L. Christopher Knight, CFE, CPA