Thursday, March 23, 2023
Kiratas
  • Home
  • World
  • Lifestyle

    Trending Tags

    • Pandemic
  • Business
  • Entertainment
  • Sports
No Result
View All Result
  • Home
  • World
  • Lifestyle

    Trending Tags

    • Pandemic
  • Business
  • Entertainment
  • Sports
No Result
View All Result
Kiratas
No Result
View All Result
Home World

Attack on online pharmacy DocMorris: 20,000 customer accounts affected

Kiratas by Kiratas
January 26, 2023
in World
Reading Time: 4 mins read
0
0
SHARES
0
VIEWS
Share on FacebookShare on Twitter

  1. Attack on online pharmacy DocMorris: 20,000 customer accounts affected

There was a security incident in mid-January at the online mail-order pharmacy DocMorris, which has its headquarters in the Netherlands. During the attack, unknown perpetrators had changed the addresses of customer accounts and ordered medicines on their behalf. About 20,000 accounts were affected by the incident, according to DocMorris.

In some cases there were “orders to changed delivery addresses”. To be on the safe side, DocMorris blocked the affected accounts and informed the customers via letters and e-mails. The responsible data protection officers in Berlin and the Netherlands already know about it, as the data protection authority in Berlin informed heise online.

Doubts about brute force attack

DocMorris explains the blocking and the incident to the customer with the use of insecure and multiple-use passwords:

Our web shop was the target of a so-called credential stuffing attack. This digital attack used computer programs to randomly attempt to log into Docmorris customer accounts using credentials stolen elsewhere. The attackers take advantage of the fact that access data for online services is unfortunately often used more than once by users. This was obviously also the case with your customer account (…)



Information from DocMorris about new access data

(Image: anonymous source)

However, heise online has received indications that people who had used one-time passwords for their customer accounts and a password manager were also affected. In this case, it seems unlikely that passwords were already known. Those affected had also vented their anger at the explanation of the online pharmacy on Twitter. Further replies from DocMorris are pending.

Recent switch to prepayment

In connection with the cases of fraud, DocMorris limited its payment methods to prepayment a few days ago. Previously, customers could also buy products on account, as reported by Apotheke Adhoc. Recently, however, both methods are no longer offered. “In order to protect our customers and ourselves, we are currently offering more payment methods that are less frequently associated with fraud. In addition to the currently restricted payment by invoice and direct debit, we offer our customers many other payment methods for their orders (Paypal, credit card, Paydirekt , Barzahlen/Viacash, Klarna with immediate transfer)”, explained a DocMorris spokesman.

Increased attacks with credential stuffing

Successful brute force attacks in which cybercriminals test access data have been more frequent in the recent past. 35,000 Paypal customers were recently affected by such an attack. Countless NortonLifeLock customers have also suffered unauthorized access due to cracked access data. If you want to check whether an e-mail address has already been published, you can look at Have I Been Pwned, for example.


(mack)

To home page

Tags: accountsaffectedAttackBrute ForceCredential StuffingcustomerDigital HealthDocMorrisonlinepharmacyPrivacySecurityVulnerabilities

Related Posts

World

TikTok boss explains before the US hearing: Bytedance is not an agent of China

by Kiratas
March 23, 2023
World

Goanywhere attack: More and more extortion victims are known

by Kiratas
March 22, 2023
World

The OK and KO of Thursday, March 23, 2023

by Kiratas
March 22, 2023
World

Concepción Sáez, member of the CGPJ appointed by IU, resigns: “The degradation of the institution is irreversible”

by Kiratas
March 22, 2023
World

Vrsaljko announces his retirement from football at the age of 31 Vrsaljko retired

by Kiratas
March 22, 2023
Next Post

Sacyr courts large infrastructure funds to sell its water subsidiary

Small asteroid races particularly close to Earth at night

Neighbors of Algeciras put bouquets of flowers in the business that the murdered man ran

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Kiratas

Latest News from World, Health, Politics, Sports, Business, Education, Technology, Arts and Latin America, the Middle East, South Asia.
Contact Us:
[email protected]

Categories

  • Automobile
  • Business
  • Sports
  • World

Browse by Tag

Apple Artificial Intelligence Bank business ChatGPT Check Cybercrime data data protection day due Energy EU euros February Google government health iOS iPhone law League Linux and Open Source live Mac Madrid March Microsoft million online photo price result Security Smartphone Spain Spanish Sánchez Test time today Vulnerabilities world year years

Recent Posts

  • TikTok boss explains before the US hearing: Bytedance is not an agent of China
  • Goanywhere attack: More and more extortion victims are known
  • The OK and KO of Thursday, March 23, 2023
  • DMCA
  • Home

© Kiratas 2023. All Rights Reserved.

No Result
View All Result
  • Home
  • Landing Page
  • Buy JNews
  • Support Forum
  • Contact Us

© Kiratas 2023. All Rights Reserved.