Start your day with intelligence. Get The OODA Daily Pulse.
Chick-fil-A is alerting customers in 10 states after a cyberattack gave hackers potential access to personal information stored in some Chick-fil-A One loyalty accounts. The company said it recently detected suspicious login activity involving certain customer accounts and launched an investigation. The Georgia-based fast-food chain determined that between June 17 and June 19, unauthorized parties used usernames and passwords obtained from a third-party source in an automated “credential-stuffing” attack targeting its website and mobile app. On July 13, the company concluded the attackers may have accessed information in affected accounts. According to data breach notification letters sent to customers in the District of Columbia, Iowa, Maryland, Massachusetts, New Mexico, New York, North Carolina, Oregon, Rhode Island and Vermont, the information that may have been accessed includes customers’ names, email addresses, Chick-fil-A One membership numbers, Mobile Pay numbers and QR codes, the last four digits of payment card numbers and Chick-fil-A gift card balances.
Full report : Cyberattack may have exposed Chick-fil-A customer data in 10 states, including New York, Massachusetts and Maryland.