“Dunkin” Donuts, Microsoft, & Marijuana – Paul’s Security Weekly #584

Hackers breach Dunkin Donuts, how insiders are serious threats to security in an organization, the return of email flooding, Microsoft helps police shut down fake tech support in India, and how Las Vegas police are cracking down on Black Market marijua… Continue reading “Dunkin” Donuts, Microsoft, & Marijuana – Paul’s Security Weekly #584

Dunkin’ Donuts Loyalty Points Accounts Are Dirt Cheap on the Dark Web

This week Dunkin’ Donuts announced hackers had broken into customers’ loyalty accounts. So what happens to them once hackers have a wad of loyalty points? Continue reading Dunkin’ Donuts Loyalty Points Accounts Are Dirt Cheap on the Dark Web

Dunkin Donuts Perks loyalty data breach: Change your password

By Waqas
Dunkin Donuts says it has suffered a data breach in which customer data of its DD Perks loyalty program may have been stolen – The DD Perk is a reward program for the company’s regular customers. According to a now-inaccessible sec… Continue reading Dunkin Donuts Perks loyalty data breach: Change your password

Dunkin’ Donuts struck in latest credential stuffing attack

Dunkin’ Donuts has alerted customers to a data breach that may impact those who signed up to DD Perks, the company’s loyalty program. The fast-casual restaurant chain learned Oct. 31 that thieves obtained username and password information belonging to Dunkin’ customers via a credential stuffing incident. Those attacks occur when cybercriminals take credential information leaked in other data breaches then plug that data into other sites, targeting users who re-use the same password on multiple sites. “Our security vendor was successful in stopping most of these attempts, but it is possible that these third-parties may have succeeded in logging in to your DD Perks account if you used your DD Perks username and password for accounts unrelated to Dunkin’,” the company said in a statement. Compromised information included customers’ first and last names, email addresses, their 16-digit DD Perks account number and the DD Perks QR code. Dunkin’ did not disclose […]

The post Dunkin’ Donuts struck in latest credential stuffing attack appeared first on Cyberscoop.

Continue reading Dunkin’ Donuts struck in latest credential stuffing attack