Websites affected by GMO Payment Gateway data leakage seek to handle consequences

Maria Nikolova

More than two weeks after the detection of the credit card information leakage, websites affected by the breach continue to deal with the consequences.

The full scale of the credit card information from the websites of two of the clients of GMO Payment Gateway Inc (TYO:3769), the Japanese provider of payment processing services, has yet to be estimated.

The leak, which happened more than two weeks ago, has affected the credit card payment site for metropolitan tax of the Tokyo Metropolitan Government and the credit card payment site for group life insurance rider of the Japan Housing Finance Agency.

According to preliminary estimates, the number of “units of information” leaked through the Tokyo Metropolitan Government website is 676,290, including 614,629 email addresses, along with 61,661 credit card numbers and credit card expiration dates. The number of “units” of credit card information reportedly leaked from the Japan Housing Finance Agency is 43,540, including credit card numbers, credit card expiration dates, security codes, credit card payment registration dates, addresses, email addresses, names, phone numbers, as well as dates of birth and payment joining dates.

The GMO Payment Gateway’s clients affected by the leak have been issuing regular updates to clients, accompanied by apologies. Today, the Japan Housing Finance Agency published another update on its website concerning the incident – it informs customers that they will be mailed a special guide on what to do with regards to the data breach. The customers will have to confirm any payments made, the payment procedure used, the receipt of the guide itself, etc.

In a previous update, the Japan Housing Finance Agency has asked customers to pay special attention to any unconfirmed transactions made through their credit cards, as well as to any charges. The Agency also urged caution with regards to suspicious phone calls and emails from people presenting themselves as employees of the Agency or GMO Payment Gateway and asking customers to provide credit card data.

GMO Payment began its investigation into a possible information leak on March 9, 2017, following alerts concerning the security of Apache Struts 2. It examined the possibility of unauthorized access at the same time. About six hours after the start of the investigation, it found unauthorized access traces and stopped all systems running with Apache Struts 2.

On March 14, 2017, GMO Payment Gateway announced the establishment of “Recurrence Prevention Committee”, which seeks to perform inspection of the systems affected and to plan and implement measures to prevent any future data breaches.

Read this next

Retail FX

FXOpen launches HK share CFDs: Tencent, Alibaba, Xiaomi, Baidu

Hong Kong share CFDs will be commission-free for a limited period of time.

Retail FX

IronFX Celebrates an Award-Winning Start to 2024 with a Series of Industry Recognitions

IronFX, a global leader in online trading, has embarked on 2024 with a spectacular display of accolades that highlight its commitment to excellence and innovation in the competitive financial services sector.

Industry News

FIA urges CFTC to regulate use cases rather than AI itself

“We urge the CFTC to refrain from crafting new regulations that generally regulate AI because this approach presents certain well-known pitfalls. By approaching the issue from the perspective of AI as a technology, rather than the use case for the technology, corresponding regulations would likely necessitate a definition of AI. We anticipate that any attempt to properly define AI would be very challenging and require considerable resources.”

Education, Inside View

The Power of Public Relations in Finance: Shaping Perceptions & Building Reputation

It’s safe to say that the finance industry has faced its share of reputation crises over the years, from the 2008 financial collapse to the many scandals around irresponsible lending, political corruption, and even Ponzi schemes. 

Digital Assets

Crossover’s crypto ECN executed over $3 billion in Q1 2024

“Our growth is also driving continued increases in the percentages of trades that are ‘Order Crossing Order’ (OXO). Currently, roughly 10% of all trades executed on CROSSx are OXO, another differentiator in our platform’s capacity. This capacity and our unique execution model provide value to both the market maker and taker, as evidenced by our commercial model.”

blockdag

BlockDAG’s Explosive Presale Hits $20.3M In April Swaying Investors From XRP’s Price Trends Upward, & Polygon’s NFT Market

Learn about BlockDAG’s impressive $20.3M presale results, XRP’s price increase prospects, and the booming NFT market on Polygon among the top 10 cryptocurrencies.

Retail FX

Financial Commission warns of Eplanet Brokers

The Financial Commission, a self-regulatory compliance specialist for the financial services industry, is ramping up its scrutiny of unregulated brokerage firms. Today, the independent association warned against a company called Eplanet Brokers.

Retail FX

Dubai crypto exchange steps into prop trading

Dubai-based cryptocurrency trading platform, CoinW Exchange, marked its sixth anniversary by announcing a rebranding initiative and launching a proprietary trading product.

Fintech

Bitcoin payments app Strike launches in Europe

Bitcoin blockchain-based payments app Strike launched in Europe on Wednesday, allowing users in the region to buy, sell, and withdraw bitcoin (BTC).

<