Updated
Updated · WTVC · Jul 23
Chick-fil-A Warns Customers After June 17-19 Cyberattack Exposed Loyalty Account Data
Updated
Updated · WTVC · Jul 23

Chick-fil-A Warns Customers After June 17-19 Cyberattack Exposed Loyalty Account Data

3 articles · Updated · WTVC · Jul 23

Summary

  • Chick-fil-A told affected customers that an automated attack between June 17 and June 19 may have exposed data in Chick-fil-A One loyalty accounts.
  • Unauthorized parties used email addresses and passwords obtained from a third-party source to log into accounts through the chain’s website and mobile app.
  • Exposed information may include names, email addresses, membership numbers, mobile pay numbers, QR codes, available Chick-fil-A credit and the last four digits of payment cards, plus birthdays, phone numbers and addresses if saved.
  • Chick-fil-A reset affected passwords, logged users out, removed stored payment methods, restored impacted balances and added rewards, while urging customers to use unique new passwords and monitor financial accounts.

Insights

After a second breach in three years, is Chick-fil-A’s security fundamentally flawed?
Who is more to blame for data breaches: companies or users who reuse passwords?
As cyberattacks evolve, are passwords finally becoming obsolete for protecting our data?