In: Computer Science
Your readings for this week have discussed databases, data breaches, and networking security in the business world. Find a major data breach within the last 2 years and do some research explain how and why the breach occurred, what information was accessed, and how this information could be misused. Has the incident been fully resolved or are there ongoing security issues with the company or customer information? Remember to include references to your readings and an article from the web to support your post. Do not use the same data breach as someone else. Include the name of the business or entity impacted by the data breach in the subject line of your discussion.
Answer)
This was the latest safety violation that took place during a
shopping website attacks in the last year. Amazon.com is the
website we know about e-commerce. Both buyers and vendors are
Amazon clients, and Amazon is just a platform for both. In the
recognized violation of safety, certain user accounts data have
been accessed from the server attacks and e-mail and password from
the customer account were used to post fake deals on Amazon at high
rates.
Hackers changed the sellers' bank account details as a result of which the customers who deposited the money were deposited into the hackers' account stealing thousands of dollars.
Other companies can learn from the lessons. As stated above, the data obtained from one breach helped to steal money and user data for another breach. Thus companies should take appropriate action when a data breach occurs and ask users to change credentials when the servers have been hacked.
Companies should also have more than enough tools in place and protection against all kinds of attacks that can occur on the Internet, as well as assigning an expert team on the same job. A security breach can also affect small businesses at all times. This is because small businesses operate on a margin. The customer or customer information stolen from the company will induce less confidence among users to use the company for later services. The customers will also be attracted to some other service company to which the hacker sells the information.
Personal information of customers is always confidential, revealing such personal information can affect the small business that is trusted to handle personal data.
Companies should take appropriate action when a data breach occurs and ask users to change credentials when the servers have been hacked. They should emphasize what was wrong with the thing that allowed the breach and correct it for the future so that nothing like it can happen in the future. Companies should have more than enough tools in place and protection against all kinds of attacks that can happen over the Internet, as well as assigning an expert team on the same job. The team will monitor suspicious activities that risk the confidentiality of customer data.
In my opinion, the security was poorly managed by Amazon as even after the leakage of credentials from the amazon server attack, Amazon did not take any steps to mitigate the risks or inform the specific user to change their passwords, which could well have averted the situation. Law enforcement should be in contact in cases where the seller, service provider and people or buyers have broken the law and raise a complaint and lodge a case against Amazon and the sellers for getting the money back. Law enforcement can be contacted at any time when illegal activity is taking place, like this example above is one of those illegal activities.