Close Menu
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Facebook X (Twitter) LinkedIn
Facebook X (Twitter) LinkedIn
Information Security BuzzInformation Security Buzz
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Subscribe
Information Security BuzzInformation Security Buzz
Home - News & Analysis - British Pub Chain has Suffered a Data Breach
News & Analysis

British Pub Chain has Suffered a Data Breach

ISBuzz TeamBy ISBuzz TeamDecember 7, 20157 Mins Read
Share LinkedIn Twitter Facebook Copy Link Email
British Pub Chain has Suffered a Data Breach
Share
Facebook Twitter LinkedIn Email Copy Link
Quick AI Summary
ChatGPTClaudeGeminiGrokPerplexityDeepSeekCopilot

Popular pub chain Wetherspoons has suffered a data breach. Cyber criminals have stolen sensitive data such as credit and debit card data from customers who bought vouchers from the JD Wetherspoon site. Security experts from Tripwire, ESET and Lieberman Software have the following comments on this breach.

[su_note note_color=”#ffffcc” text_color=”#00000″]Jonathan Sander, VP of Product Strategy at Lieberman Software :

Any ideas as to what may have lead to the breach?

“Wetherspoons says the breach was on their old website, at least in part. Whenever you hear “old” in reference to technology, you should understand it to mean insecure and containing vulnerabilities the bad guys know and love.”

While we don’t know exactly what happened, this is the most recent in a very long line of large scale breaches involving customer data – why?

“Wetherspoons is only one in a chain of breaches because the bad guys are becoming more professional. They are attacking anything and everything that can yield money. People still picture lone wolf hackers in a basement with their face lit by a single glowing monitor, wearing a hoodie and drinking an energy drink. Many of the bad guys are going into offices in Eastern Europe or Asia and simply doing a job. They are more concerned with their benefits than with who they may be attacking. Stealing digital information isn’t a hobby, it’s a career.

We’ve also become much better at seeing the signs of a breach. So we have a combination of more brute force attacking and more attention being paid feeding the headlines new incidents daily.”

Advice to customers that may be affected

“Customers should do the only thing they can do – watch their financials for suspicious transactions. If anyone who got caught up in this breach hasn’t already learned the lesson that they should not use the same passwords and security question answers across multiple sites, then hopefully this will make that lesson sink in. Sadly, it seems that’s the only way many people will really start taking that warning seriously.”

What should organisations be doing to stop this happening?

“The advice for anyone running a website is the same “eat right and exercise” style advice security folks have been giving for decades. There are well known things people can do to protect their website assets, and most of it is simply good hygiene in the development and operations processes. Organizations looking for a good, specific, prescriptive guide to this security would do well to go to the OWASP top ten list, where they maintain the most urgent threats to website security.”

Have Wetherspoons handled this well? What can they learn from TalkTalk’s recent experience?

“People can handle bad news but they hate surprises. Lucky for Wetherspoons, breaches aren’t that surprising anymore. But people don’t like it when they aren’t told until it feels too late. The announcements from Wetherspoons seem to be coming out as soon as they know anything. So that gives the impression that they are trying their best to keep the public informed. It’s still bad news, but at least they are giving people the information they need to understand what’s happening.”[/su_note]

[su_note note_color=”#ffffcc” text_color=”#00000″]Tim Erlin, Director of Security and Product Management at Tripwire :

“If you’re an organization that collects data about your customers, you’re a target for cyberattacks, and you should be considering how you protect that data. While the loss of credit card data clearly constitutes a significant risk, all personal data is valuable to cybercriminals.

When personal information is compromised, the risks to the consumer usually involve identity theft and other scams. If your data was part of the compromise, watch out for unsolicited phone calls, emails and other evidence of identity theft. Your data may be used weeks or months after the compromise, so check your credit report three or six months down the road.”[/su_note]

[su_note note_color=”#ffffcc” text_color=”#00000″]Mark James, Security Specialist at IT Security Firm ESET :

Any ideas as to what may have lead to the breach?

“All too often these days website security is not up to the standards required to combat the expertise that modern day cyber criminals possess. John Hutson the CEO of JD Wetherspoons has stated that the breach affected the chain’s “old website” which has since been replaced in its entirety.

There’s a high possibility that little or poor security was involved in the original creation of the site and that in itself led to the site being rewritten. If this was the case it would be quite easy to gain access to that data and retrieve all the information and leave without anyone ever noticing. What is a concern here is the fact that Wetherspoons did not even know they had been compromised and although the attack happened in June, were only informed recently by security experts.”

While we don’t know exactly what happened, this is the most recent in a very long line of large scale breaches involving customer data – why?

“Let’s be realistic here, breaches are happening all the time, some are successful and some are not, more worryingly some go unnoticed for weeks, months or even years before being found out. Customer data can be used for many things not just instant financial gain, the type of data being harvested will almost certainly go on to be used for identity theft or used for phishing scams in an attempt to lure the unsuspecting public with snippets of valid data. Any data that rings true will have a higher chance of progressing further than the daily deluge of opportunistic spam we receive.”

Advice to customers that may be affected

“If you think you have been affected by this or any other breach there are a few things you can do to help protect yourself, change any passwords that were used on this site that you may also be using on others. Be very mindful of any communication out of the blue that may contain small amounts of information about you and always double check with financial organizations before supplying more details. If you get an email to verify your details spend a few more minutes calling or contacting that company to verify its validity, it may sound like a lot of effort but I can assure its nothing compared to the hassle of having to cancel Credit Cards and going through recovery processes.”

What should organisations be doing to stop this happening?

“Organizations need to review their website security, ensuring all patches are applied to software and hardware where required. Regular data monitoring needs to be in place to spot attacks before they manage to be successful and internet security software should be in place and updating regularly. Also, make sure you’re running an up-to-date secure operating system and do not be afraid to seek help.”

Have Wetherspoons handled this well? What can they learn from TalkTalk’s recent experience?

“As in this case notifying customers as soon as possible should be one of their priority’s, it’s very important the public are aware of any instance their data may be breached so they can take action to protect financial loss and also be on their guard from attempts to gain more info through phishing or targeted attacks.”[/su_note]

ISBuzz Team
  • ISBuzz Team
    Air Canada Data Breach: BianLian Extortion Group Claims A Massive Heist Contrary To Airline’s Earlier Statement
  • ISBuzz Team
    Unprecedented DDoS Attack Rocks The Web: Tech Giants Reveal A Digital Tsunami
  • ISBuzz Team
    CISA Flags High-Severity Adobe Acrobat Reader Flaw Amid Active Exploits
  • ISBuzz Team
    Curl Security Alert: Patching A Critical Bug Averting Potential Cyber Catastrophe

The opinions expressed in this post belong to the individual contributors and do not necessarily reflect the views of Information Security Buzz.

Share. Facebook Twitter LinkedIn Email Copy Link

Related Posts

New Phishing Kit Starkiller Defeats Multi-Factor Authentication

February 23, 20264 Mins Read

ReliaQuest Uncovers Social Media Phishing Campaign Built on Trusted Tools

January 22, 20266 Mins Read

What Happens after a Phishing Email Lands in Your Inbox?

January 5, 20266 Mins Read
ISB-Bora-Side-Bar

No se ha podido establecer conexión. Error 429

 
ISB-Bora-Side-Bar
Black ISB Logo

Information Security Buzz is an independent resource that provides the experts’ comments, analysis, and opinion on the latest Cybersecurity news and topics

X (Twitter) LinkedIn Facebook RSS

Working With Us

  • About Us
  • Advertise With Us
  • Contact Us

Write For Us

  • How To Contribute

The Pages

  • Privacy Policy
  • Cookie Policy
  • AI Policy
  • Terms & Conditions
  • Copyright Notice

Information Security Buzz and all its contents are copyright © 2014-2025. All rights reserved. All third-party trademarks are recognized.

Type above and press Enter to search. Press Esc to cancel.

Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}