Select Page

Incident: Woolworths Rewards cards ‘hacked’, points stolen |

Incident: Woolworths Rewards cards ‘hacked’, points stolen |

Australian Information Security Incident Reported: July 27 2017

Woolworths is investigating reports of Rewards cards being “hacked” and points stolen from customers’ accounts using a major security vulnerability in the Woolworths app.

Currently, the app allows anyone to enter a random card number to see the points balance on the account. The user can then enter the number into a rewards card app like Stocard to generate an image of the barcode, which can be scanned at the Woolworths checkout to claim the discount.

Numerous customers have taken to the OzBargain forum to report points being stolen.

Source: Woolworths Rewards cards ‘hacked’, points stolen

About The Author

Steven Kirby

I provide independent and practical consultancy services through raising awareness and fostering the energy for change that delivers improved business management of information security governance, risk and compliance.

Leave a Reply

This site uses Akismet to reduce spam. Learn how your comment data is processed.

More Australian News

Weekly Australian News and Monthly Incident Review Emails

No advertisements, marketing, sales, or unsolicited emails. Your email address is ONLY used to send the publications listed above.

* indicates required

Share This