Menu
Browse

Cyber Incident Victim: eatigo

Date:

Oct 2020

Location:

Singapore

Summary

A restaurant reservation platform suffered unauthorized access to its customer database, resulting in a data breach potentially impacting 2.8 million accounts. Personal information from compromised accounts was subsequently listed for sale online. The incident affected multiple e-commerce platforms concurrently, with the victim organization notifying customers of the security intrusion without disclosing specific data types exposed or attack methodologies employed.

CIA Posture Motives Tactics, Techniques & Procedures
Available to members 1 motive 1 technique
Threat Actor Type Location
1 actor Available to members Available to members

Description

The cyber incident involved a data breach at Eatigo, a restaurant reservation platform, where personal data from potentially 2.8 million customer accounts was illegally accessed. The compromised data was subsequently listed for sale online, suggesting that the attackers' motive was financial gain. The breach involved the exfiltration of data from customer accounts, but the integrity and availability of the system were not affected. The attackers' identities remain unknown.

Cyber Incident Image

The incident highlights the importance of protecting sensitive customer data and the need for robust security measures to prevent unauthorized access. The fact that the data was listed for sale online suggests that the attackers were likely motivated by financial gain, and the breach may have been carried out by a group or individual with the intention of selling the stolen data on the dark web.

The breach is likely to have caused significant concern for Eatigo's customers, who may be worried about the potential consequences of their personal data being compromised. The incident may also have damaged Eatigo's reputation and led to a loss of customer trust. The company's response to the breach, including notifying customers and taking steps to improve security, will be crucial in mitigating the damage and preventing similar incidents in the future.

The use of exfiltration techniques by the attackers suggests that they had a high degree of sophistication and were able to exploit vulnerabilities in Eatigo's systems. The fact that the breach was not detected until the data was listed for sale online raises questions about the effectiveness of Eatigo's security measures and the need for more robust monitoring and detection systems.

The incident also highlights the importance of international cooperation in combating cybercrime. As the breach involved the theft of data from a company based in Singapore, it is likely that the attackers were located in a different country. This makes it essential for law enforcement agencies and cybersecurity experts to work together across borders to track down the perpetrators and bring them to justice.

The breach at Eatigo is just one example of the growing threat posed by cybercrime to businesses and individuals around the world. As technology continues to evolve and more data is stored online, the risk of cyber attacks is likely to increase. It is essential that companies take proactive steps to protect themselves and their customers from these threats, including investing in robust security measures and educating employees and customers about the risks of cybercrime.

In the case of Eatigo, the breach highlights the need for the company to review its security procedures and implement additional measures to prevent similar incidents in the future. This may include improving password security, implementing two-factor authentication, and providing regular security updates and patches to prevent vulnerabilities from being exploited.

The incident also raises questions about the role of regulators and governments in protecting consumers from cybercrime. As the breach involved the theft of personal data, it is likely that regulators will be keen to ensure that Eatigo has taken adequate steps to protect its customers' data. This may involve fines or other penalties if the company is found to have been negligent in its handling of customer data.

Overall, the breach at Eatigo is a serious incident that highlights the growing threat posed by cybercrime to businesses and individuals around the world. It is essential that companies take proactive steps to protect themselves and their customers from these threats, and that regulators and governments work to create a safer online environment.

Sources
Sources available to members
1 source