Study finds hackers targeting loyalty programs

Default Image

According to Akamai, since the pandemic began and people took more of their lives online, from how they shopped to work routines, cybercriminals have begun recirculating old password combination lists; this is in addition to newer lists from the dark web. These new efforts to defraud should serve as a reminder not only to consumers but to businesses to encourage people to update and upgrade passwords and other sensitive credentials.

“Criminals are not picky – anything that can be accessed can be used in some way,” said Steve Ragan, Security Researcher and Author of State of the Internet/Security Report, Akamai. “This is why credential stuffing has become so popular over the past few years. These days, retail and loyalty profiles contain a smorgasbord of personal information, and in some cases financial information, too. All of this data can be collected, sold, and traded or even compiled for extensive profiles that can later be used for crimes such as identity theft.”

Other interesting findings from the Akamai report include:

• From July 2018 to June 2020 Akamai saw more than 100 billion credential stuffing attacks
• 90% of attacks from the commerce category targeted retail
• 41% of attacks SQL Injection and Local File Inclusion
• 83% of attacks using SQL Injection/Local File Inclusion targeted retail

“All businesses need to adapt to external events, whether it’s a pandemic, a competitor, or an active and intelligent attacker,” said Ragan. “Some of the top loyalty programs targeted require nothing more than a mobile number and numeric password. . .there is an urgent need for better identity controls and countermeasures to prevent attacks against APIs and server resources.”

More data from Akamai’s report can be accessed here.

Share:
Share

ABOUT THE AUTHOR

Kristina Knight-1
Kristina Knight, Journalist , BA
Content Writer & Editor
linkedin
Kristina Knight is a freelance writer with more than 15 years of experience writing on varied topics. Kristina’s focus for the past 10 years has been the small business, online marketing, and banking sectors, however, she keeps things interesting by writing about her experiences as an adoptive mom, parenting, and education issues. Kristina’s work has appeared with BizReport.com, NBC News, Soaps.com, DisasterNewsNetwork, and many more publications.