. 24/7 Space News .
CYBER WARS
Questions mount over delay after Cathay Pacific admits huge data leak
by Staff Writers
Hong Kong (AFP) Oct 25, 2018

Hong Kong carrier Cathay Pacific came under pressure Thursday to explain why it had taken five months to admit it had been hacked and compromised the data of 9.4 million customers, including passport numbers and credit card details.

The airline said Wednesday it had discovered suspicious activity on its network in March and confirmed unauthorised access to certain personal data in early May.

However, chief customer and commercial officer Paul Loo said officials wanted to have an accurate grasp on the situation before making an announcement and did not wish to "create unnecessary panic".

News of the leak sent shares in Cathay, which was already under pressure as it struggles for customers, plunging more than six percent to a nine-year low in Hong Kong trading.

Local politicians slammed the carrier, saying its response had only fuelled worries.

"Whether the panic is necessary or not is not for them to decide, it is for the victim to decide. This is not a good explanation at all to justify the delay," said IT sector lawmaker Charles Mok.

And legislator Elizabeth Quat said the delay was "unacceptable" as it meant customers missed five months of opportunities to take steps to safeguard their personal data.

The airline admitted about 860,000 passport numbers, 245,000 Hong Kong identity card numbers, 403 expired credit card numbers and 27 credit card numbers with no card verification value (CVV) were accessed.

Other compromised passenger data included nationalities, dates of births, phone numbers, emails, and physical addresses.

- Probe launched -

"We have no evidence that any personal data has been misused. No-one's travel or loyalty profile was accessed in full, and no passwords were compromised," chief executive Rupert Hogg said in a statement Wednesday.

But Mok said the public needs to know how the company can prove that was the case.

"Such a statement doesn't give people absolute confidence that we are completely safe, and it doesn't mean that some of this data would not be misused later," Mok told AFP.

He also pointed out that the the European Union's new General Data Protection Regulation says any such breach should be reported within 72 hours.

Hong Kong's privacy commissioner Stephen Wong expressed "serious concern" over the breach in a statement Thursday and said the office would initiate a compliance check with the airline.

"Organisations in general that amass and derive benefits from personal data should ditch the mindset of conducting their operations to meet the minimum regulatory requirements only," Wong said.

"They should instead be held to a higher ethical standard that meets the stakeholders' expectations alongside the requirements of laws and regulations," he added.

Cathay said it had launched an investigation and alerted the police after an ongoing IT operation revealed unauthorised access of systems containing the passenger data.

The company is in the process of contacting affected passengers and providing them with solutions to protect themselves.

- Struggling business -

Cathay Pacific is already battling to stem major losses as it comes under pressure from lower-cost Chinese carriers and Middle East rivals.

It booked its first back-to-back annual loss in its seven-decade history in March, and has previously pledged to cut 600 staff including a quarter of its management as part of its biggest overhaul in years.

Shares of the carrier plunged 3.77 percent on Thursday.

The troubled airline did not mention financial compensation for passengers affected by the data leak, but British Airways pledged to compensate customers when the UK flag carrier suffered a data hack last month.

BA revealed in September that personal and financial details of about 380,000 customers who booked flights on the group's website and mobile phone app over several weeks had been stolen.

The leak is the latest to hit global companies in recent years.

Facebook revealed last month that up to 50 million accounts were breached by hackers, while ride-sharing giant Uber was vilified after a breach in 2016 of data on 57 million of its riders and drivers was revealed only in November 2017.

In April, the holding company of Yahoo was fined $35 million by US regulators because it had not informed them until this year that hackers had stolen "crown jewel" data including email addresses and passwords.

And in US credit bureau Equifax identified almost 150 million American consumers' personal details had been exposed by a massive data breach that sparked a public outcry and a congressional probe.

In 2011 Sony suffered a massive breach that compromised more than 100 million accounts and forced it to temporarily halt its PlayStation Network and Qriocity services.


Related Links
Cyberwar - Internet Security News - Systems and Policy Issues


Thanks for being there;
We need your help. The SpaceDaily news network continues to grow but revenues have never been harder to maintain.

With the rise of Ad Blockers, and Facebook - our traditional revenue sources via quality network advertising continues to decline. And unlike so many other news sites, we don't have a paywall - with those annoying usernames and passwords.

Our news coverage takes time and effort to publish 365 days a year.

If you find our news sites informative and useful then please consider becoming a regular supporter or for now make a one off contribution.
SpaceDaily Monthly Supporter
$5+ Billed Monthly


paypal only
SpaceDaily Contributor
$5 Billed Once


credit card or paypal


CYBER WARS
Apple chief pushes for US privacy law to stop 'weaponizing' data
Brussels (AFP) Oct 24, 2018
Apple CEO Tim Cook on Wednesday said the United States needed a federal privacy law because personal information was being "weaponized" by companies against internet users to boost profits. "We at Apple are in full support of a comprehensive federal privacy law in the United States," Cook told a conference in Brussels. Gossip, he said, had become a lucrative trade for the internet giants. "Today that trade has exploded into a data industrial complex. Our own information, from the everyday to ... read more

Comment using your Disqus, Facebook, Google or Twitter login.



Share this article via these popular social media networks
del.icio.usdel.icio.us DiggDigg RedditReddit GoogleGoogle

CYBER WARS
Plant hormone makes space farming a possibility

US-Russia space cooperation to go on despite Soyuz launch mishap

Escape capsule with Soyuz MS-10 crew hit ground 5 times before stopping

'Concrete block on your chest': astronauts recount failed space launch

CYBER WARS
Taxi tests for Paul Allen's Stratolaunch successfully reach 90 mph

Probe commission rules out sabotage as possible cause of Soyuz failure

Launches of Russian Rokot-2 rocket may begin again in 2021

Rocket Lab selects Wallops Flight Facility for US launch site

CYBER WARS
Scientists to debate landing site for next Mars rover

Efforts to communicate with Opportunity continue

Painting cars for Mars

Novel Technique Quickly Maps Young Ice Deposits and Formations on Mars

CYBER WARS
China's space programs open up to world

China's commercial aerospace companies flourishing

China launches Centispace-1-s1 satellite

China tests propulsion system of space station's lab capsules

CYBER WARS
Space industry entropy

How Max Polyakov from Zaporozhie develops the Ukrainian space industry

European Space Talks: we need more space!

Source reveals timing of OneWeb satellites' debut launch on Soyuz

CYBER WARS
Orbit Logic's scheduling software selected for NASA satellite servicing mission

Memory-steel makes for new material to strengthen buildings

Molecular memory can be used to increase the memory capacity of hard disks

Use of raw materials to double by 2060: OECD

CYBER WARS
Scientific research will help to understand the origin of life in the universe

Life-long space buff and Western graduate student discovers exoplanet

How the seeds of planets take shape

NASA should expand search for life in the universe: NAS Report

CYBER WARS
Icy moon of Jupiter, Ganymede, shows evidence of past strike-slip faulting

Icy warning for space missions to Jupiter's moon

New Horizons sets up for New Year's flyby of Ultima Thule

Hunt for Planet X reveals the Goblin, a faraway dwarf planet









The content herein, unless otherwise known to be public domain, are Copyright 1995-2024 - Space Media Network. All websites are published in Australia and are solely subject to Australian law and governed by Fair Use principals for news reporting and research purposes. AFP, UPI and IANS news wire stories are copyright Agence France-Presse, United Press International and Indo-Asia News Service. ESA news reports are copyright European Space Agency. All NASA sourced material is public domain. Additional copyrights may apply in whole or part to other bona fide parties. All articles labeled "by Staff Writers" include reports supplied to Space Media Network by industry news wires, PR agencies, corporate press officers and the like. Such articles are individually curated and edited by Space Media Network staff on the basis of the report's information value to our industry and professional readership. Advertising does not imply endorsement, agreement or approval of any opinions, statements or information provided by Space Media Network on any Web page published or hosted by Space Media Network. General Data Protection Regulation (GDPR) Statement Our advertisers use various cookies and the like to deliver the best ad banner available at one time. All network advertising suppliers have GDPR policies (Legitimate Interest) that conform with EU regulations for data collection. By using our websites you consent to cookie based advertising. If you do not agree with this then you must stop using the websites from May 25, 2018. Privacy Statement. Additional information can be found here at About Us.