Qantas chief Vanessa Hudson has defended the airline’s handling of its frequent flyer customer data after this week’s cyber breach and pledged to take lessons from such privacy violations in the future.
Two days after the airline informed the world that cyber criminals had accessed details on up to six million Qantas customers through a third-party vendor, the airline’s boss has vowed to keep passengers’ interests正面和中心。
QANTAS首席Vanessa Hudson:我们正在对待“令人难以置信的认真” hack。账户,但说在600万乘客陷入数据泄露的乘客中,有80%是忠诚度计划的成员。
“我们对我们的常见传单数据库非常安全感到非常有信心,”她说。澳航声称在全球范围内声称1700万常客。
在周三首次透露,最高600万个客户的数据违反了,
加载加载是安全的。 QATANTAS希望能够根据正在进行的法医调查的节奏在下周受到呼叫中心平台的黑客攻击影响的各个客户数据的详细信息。
说: class =“ ctzll”>广告 <部分class =“ kylbs” data-testid =“文章 - 与底部”>
哈德森说,潜在的改革将适用于Qantas呼叫中心的运作方式,以及公司如何管理和控制数据和信息。 and service our customers.”
LoadingThose two mandates are “not in competition”, said Hudson, who took over as chief executive from Alan Joyce, whose bruising leadership through the COVID-19 pandemic, customer ticketing scams, and illegal sackings put the airline’s reputation in tatters.
Hudson also said she would support the planned Aviation Industry Ombuds Scheme covering the rights of customers in this
“如果有助于增加消费者的信心和信任,我们将欢迎任何独立的过程。堪培拉。
Qantas says frequent flyer accounts are secure.Credit: Michel O Sullivan
To date, Qantas has not been contacted by anyone claiming to have the data, following the incident suspected to be the work of the Scattered蜘蛛犯罪网络集团继续与政府当局合作调查活动。 Qantas
Qantas成为最新的网络漏洞袭击的主要航空公司,当时它在星期三的黑客中透露,黑客从其呼叫中心之一访问了客户的个人信息。
网络安全性官员最新犯罪分子散落的罪名也可能是速成的速度。联邦调查局本周警告说,散布蜘蛛的一部分策略是“窃取敏感的数据”。
该小组已众所周知,该小组已被部署勒索软件,该软件涉及锁定敏感的数据并释放它或释放它民族国家的演员“在网络中建立持久性”,同时学习最有价值的资产在组织的网络中。
它也实践了网络安全专家称之为“生活在土地上”的东西 - 在系统中重申合法技术,以使尼尔德的目标是不可思议的。
一旦像散落的蜘蛛这样建立了一个存在并访问了信息,它就可以“部署勒索软件或偷窃器或偷窃数据,并勒索赎金的受害者”,根据记录 。当涉及到社会工程方面,他们已经确定了他们成功地利用我们的安全系统中的主要差距。 and impersonates that user with a convincing backstory.”
The goal Beek said was to persuade the help desk to reset the user’s password and/or multifactor authentication device, which gives control of the account to the attacker.
“By targeting high-privilege or sensitive accounts for these resets, Scattered Spider often sidesteps the need for traditional privilege escalation — they start with the keys贝克说。客户之所以要更新引脚,部分是因为可以使用其他数据被盗的其他数据来推断受害者的密码。 注册每个工作日早上 。
澳洲中文论坛热点