Frame-14

Privacy Ninja

        • DATA PROTECTION

        • CYBERSECURITY

        • Secure your network against various threat points. VA starts at only S$1,000, while VAPT starts at S$4,000. With Price Beat Guarantee!

        • API Penetration Testing
        • Enhance your digital security posture with our approach that identifies and addresses vulnerabilities within your API framework, ensuring robust protection against cyber threats targeting your digital interfaces.

        • On-Prem & Cloud Network Penetration Testing
        • Boost your network’s resilience with our assessment that uncovers security gaps, so you can strengthen your defences against sophisticated cyber threats targeting your network

        • Web Penetration Testing
        • Fortify your web presence with our specialised web app penetration testing service, designed to uncover and address vulnerabilities, ensuring your website stands resilient against online threats

        • Mobile Penetration Testing
        • Strengthen your mobile ecosystem’s resilience with our in-depth penetration testing service. From applications to underlying systems, we meticulously probe for vulnerabilities

        • Cyber Hygiene Training
        • Empower your team with essential cybersecurity knowledge, covering the latest vulnerabilities, best practices, and proactive defence strategies

        • Thick Client Penetration Testing
        • Elevate your application’s security with our thorough thick client penetration testing service. From standalone desktop applications to complex client-server systems, we meticulously probe for vulnerabilities to fortify your software against potential cyber threats.

        • Source Code Review
        • Ensure the integrity and security of your codebase with our comprehensive service, meticulously analysing code quality, identifying vulnerabilities, and optimising performance for various types of applications, scripts, plugins, and more

        • Email Spoofing Prevention
        • Check if your organisation’s email is vulnerable to hackers and put a stop to it. Receive your free test today!

        • Email Phishing Excercise
        • Strengthen your defense against email threats via simulated attacks that test and educate your team on spotting malicious emails, reducing breach risks and boosting security.

        • Cyber Essentials Bundle
        • Equip your organisation with essential cyber protection through our packages, featuring quarterly breached accounts monitoring, email phishing campaigns, cyber hygiene training, and more. LAUNCHING SOON.

Croatian Phone Carrier Data Breach Impacts 200,000 Clients

Croatian Phone Carrier Data Breach Impacts 200,000 Clients

Croatian phone carrier ‘A1 Hrvatska’ has disclosed a data breach exposing the personal information of 10% of its customers, roughly 200,000 people.

The announcement does not provide many details other than that they suffered a cybersecurity incident involving the unauthorized access of one of their user databases, which contained sensitive personal information.

The type of information that has been accessed includes full names, personal identification numbers, physical addresses, and telephone numbers.

A1 Hrvatska emphasizes that information on bank cards or online accounts hasn’t been compromised, as the accessed database didn’t contain these details.

Also Read: How Does Ransomware Work? Examples and Defense Tips

This critical part was confirmed by a computer forensics team that investigated the incident and analyzed the logs to determine what was stolen.

A1 Hrvatska says they are directly notifying customers whose information was exposed in this breach.

Meanwhile, the Zagreb Police has already received a criminal report and is investigating the attack.

“A1 Croatia takes this embarrassing situation extremely seriously and, immediately after the first signs of suspicion of unauthorized access to the user base, immediately and without delay prevented further unauthorized access and took additional protection measures,” reads the statement.

“A1 Croatia adheres to the highest security standards and data protection, and we will continue to make additional investments in improving the security environment. The recurrence of this security incident is not possible and has not had and will not affect the provision of services to customers.” 

Also Read: How Does Ransomware Work? Examples and Defense Tips

A1 Hrvatska is a strategic partner of Vodafone, whose Portugal region suffered a very disruptive cyberattack three days ago that led to the disruption of 4G and 5G data services.

Strategic partners sometimes share online infrastructure, but in this case, the connection seems unlikely, even though it can’t be completely ruled out.

The incident doesn’t appear to have affected A1 Hrvatska’s services or operations, so it looks like a case of unauthorized access to a database, either through a misconfiguration or stolen credentials.

Bleeping Computer has contacted A1 Hrvatska to learn more about this incident, and we will update this post as soon as we have a response.

0 Comments

KEEP IN TOUCH

Subscribe to our mailing list to get free tips on Data Protection and Data Privacy updates weekly!

Personal Data Protection

REPORTING DATA BREACH TO PDPC?

We have assisted numerous companies to prepare proper and accurate reports to PDPC to minimise financial penalties.
×

Hello!

Click one of our contacts below to chat on WhatsApp

× Chat with us