CTV is reporting that the website of Canada’s largest Asian supermarket chain has been hacked. BC-based T&T Supermarket Inc, with three locations in Toronto has advised the public of “unauthorized and illegal intrusions” on its website in a press release. The breaches occurred June 6, 7, 11, and from June 14 to 17. The personal information of up to 58,000 customers in its database may have been compromised, and the personal computers of some customers could have been exposed to malware.
The compromised data includes usernames, passwords, first and last names, ages, genders, email and street addresseses, cell and other phone/fax numbers. Information submitted to T&T by job applicants may also have been accessed. Those who visited the site during June 6th to 17th to place product orders for in-store pick up or apply for jobs may have been redirected to a non-T&T website hosting Fake A-V, instructing them to click a button on the screen to start a malware scan, which could have activated a malware download.
T & T has 20 stores in British Columbia, Alberta and Ontario. Loblaw Companies Ltd. bought the chain for $225 million in July 2009. T&T is urging anyone who receives communications purporting to be from T&T not to provide any personal information under any circumstances. T&T will be contacting customers that may have been affected, but will NOT request personal data, especially sensitive information like credit card numbers. The company has temporarily suspended its website, retained security experts to conduct a complete investigation, and expects to improve its information security based on their recommendations.
If you believe that you may have been affected, run a reliable commercial anti-virus product on all of your systems, and change any usernames or passwords for unrelated services or accounts elsewhere. All customers are also encouraged to have a heightened awareness of email, telephone and postal scams where personal information is being requested. Affected individuals can email firstname.lastname@example.org or call 1-855-926-2342 for assistance.