News

Chipotle discloses possible data breach

Thursday 27 April 2017 10:14 CET | News

Chipotle, an American chain of fast casual restaurants in the US, UK, Canada, Germany, and France, has disclosed a possible data security issue.

The company announced it recently detected unauthorized activity on the network that supports its payment system in restaurants, but believes it has stopped the activity. Furthermore, the investigation is focused on restaurant transactions between March 24 and April 18, 2017, and the company would not provide further details since the investigation is still going on.

A Chipotle representative said the company has notified card networks, which notifies issuing banks, which in turn notifies customers.

Sándor Bálint a security specialist commented on this and added that this incident is a reminder of the fundamental problem about credit card payments, that they are the source of a host of security issues and very difficult and costly to secure. The problem is that a sequence of characters, the card number, is used as an identifier, but this same sequence (when combined with the expiration date and the card security number) is sufficient to make financial transactions on behalf of the cardholder, therefore the known number is also treated as a secret.


Free Headlines in your E-mail

Every day we send out a free e-mail with the most important headlines of the last 24 hours.

Subscribe now

Keywords: Chipotle, data breach, restaurants, security, fraud prevention, US, card networks, issuing banks, credit cards
Categories: Fraud & Financial Crime
Companies:
Countries: World
This article is part of category

Fraud & Financial Crime






Industry Events