iOttie Discloses Data Breach

iOttie, a manufacturer of car mounts and mobile accessories, recently revealed that its website was compromised for almost two months with malicious scripts, allowing for a data breach that could have disclosed customers’ names, PII, and payment information.

Lovely.

Pedro Fortuna, CTO and Cofounder, Jscrambler had this to say:

     “In the current digital era, companies need to be closely monitoring and managing their websites to keep track of potential malicious scripts. Malicious scripts, such as those used in this attack that iOttie fell victim to, can compromise the security of websites and gain unauthorized access to sensitive information, including accessing payment details and Personally Identifiable Information (PII). Failing to detect and prevent such malicious scripts can result in severe consequences for both businesses and users, leading to financial loss, identity theft, and breaches of privacy.  By prioritizing proactive and robust security procedures like constant vigilance, companies can maintain business continuity and demonstrate their dedication to their customers’ privacy.”

On top of that, I will note that the breach happened on 4/12/2023 but it wasn’t discovered until two months later. That’s bad. Companies need to do better in terms of notifying people when breaches happen. Or better yet, keep them from happening in the first place.

Leave a Reply

Discover more from The IT Nerd

Subscribe now to keep reading and get access to the full archive.

Continue reading