Frame-14

Privacy Ninja

        • DATA PROTECTION

        • CYBERSECURITY

        • Secure your network against various threat points. VA starts at only S$1,000, while VAPT starts at S$4,000. With Price Beat Guarantee!

        • API Penetration Testing
        • Enhance your digital security posture with our approach that identifies and addresses vulnerabilities within your API framework, ensuring robust protection against cyber threats targeting your digital interfaces.

        • On-Prem & Cloud Network Penetration Testing
        • Boost your network’s resilience with our assessment that uncovers security gaps, so you can strengthen your defences against sophisticated cyber threats targeting your network

        • Web Penetration Testing
        • Fortify your web presence with our specialised web app penetration testing service, designed to uncover and address vulnerabilities, ensuring your website stands resilient against online threats

        • Mobile Penetration Testing
        • Strengthen your mobile ecosystem’s resilience with our in-depth penetration testing service. From applications to underlying systems, we meticulously probe for vulnerabilities

        • Cyber Hygiene Training
        • Empower your team with essential cybersecurity knowledge, covering the latest vulnerabilities, best practices, and proactive defence strategies

        • Thick Client Penetration Testing
        • Elevate your application’s security with our thorough thick client penetration testing service. From standalone desktop applications to complex client-server systems, we meticulously probe for vulnerabilities to fortify your software against potential cyber threats.

        • Source Code Review
        • Ensure the integrity and security of your codebase with our comprehensive service, meticulously analysing code quality, identifying vulnerabilities, and optimising performance for various types of applications, scripts, plugins, and more

        • Email Spoofing Prevention
        • Check if your organisation’s email is vulnerable to hackers and put a stop to it. Receive your free test today!

        • Email Phishing Excercise
        • Strengthen your defense against email threats via simulated attacks that test and educate your team on spotting malicious emails, reducing breach risks and boosting security.

        • Cyber Essentials Bundle
        • Equip your organisation with essential cyber protection through our packages, featuring quarterly breached accounts monitoring, email phishing campaigns, cyber hygiene training, and more. LAUNCHING SOON.

Pro Wrestling Tees Discloses Data Breach After Credit Cards Stolen

Pro Wrestling Tees Discloses Data Breach After Credit Cards Stolen

Popular wrestling t-shirt site Pro Wrestling Tees has disclosed a data breach incident that has resulted in the compromise of the financial details of tens of thousands of its customers.

Pro Wrestling Tees is a website allowing professional wrestlers to set up their own mini-stores to sell merchandise like shirts, posters, action figures, and more to their fans.

The platform also organizes regular meet-ups for fans to meet their favorite athletes, making the site is very popular among the various wrestling communities worldwide.

Also Read: What is Social Engineering and How Does it Work?

In a data breach notification sent to affected individuals on December 15, 2021, Pro Wrestling Tees was informed by law enforcement on November 01, 2021, that a small portion of its customers’ credit card numbers had been compromised.

The entity informed the Office of the Maine Attorney General about the incident on December 22, 2021, saying the incident affected 31,000 customers.

“We immediately conducted an extensive investigation of our system and concluded that a malware virus was the source of breach,” reads the Pro Wrestling Tees data breach notification.

“Working with a sophisticated forensic vendor, we have removed the malware virus from our system. We did not find any evidence that any current individual personal information was compromised.”

The credit cards were stolen due to a malware infection that stole full names and credit card numbers along with the matching CVV codes.

While it is not clear how the cards were stolen, it was likely caused by their site being hacked and a malicious skimmer script added to steal credit cards during checkout.

Also Read: 4 Reasons Why You Need an Actively Scanning Antivirus Software

Skimmers are small snippets of code that hide on website elements and run only when a visitor is on the checkout page to steal the details entered on the order form.

In the meantime, affected individuals are advised to take up the offering of one-year of identity theft protection and credit monitoring services through IDX.

Unfortunately, some users on Reddit claim to have lost thousands of USD due to their credit cards being stolen, while others say their bank intervened and flagged fraudulent transactions.

Reddit discussion between affected users
Reddit discussion between affected users
Source: Reddit

This means that the details are already being exploited in the cyber-criminal underground, so utmost vigilance to all Pro Wrestling Tees customers is advised.

We have reached out to Pro Wrestling Tees to learn more about the type and scope of the incident, and we will update this post as soon as we know more.

0 Comments

KEEP IN TOUCH

Subscribe to our mailing list to get free tips on Data Protection and Data Privacy updates weekly!

Personal Data Protection

REPORTING DATA BREACH TO PDPC?

We have assisted numerous companies to prepare proper and accurate reports to PDPC to minimise financial penalties.
×

Hello!

Click one of our contacts below to chat on WhatsApp

× Chat with us