December 26, 2024

Hardware chain Total Tools has experienced a data leak after a “cyber incident” affecting 38,000 customers.

Chief Executive Richard Murray confirmed that certain personal information was illegally compromised.

Investigations into the leak suggest names, email addresses, credit card data and log-in details have all been leaked.

READ MORE: Four teenagers arrested over alleged homophobic attacks in Perth

Murray said the business was confident that the cause of the leak had been removed from its website.

“The data that has been illegally compromised includes customer name, email address, Total Tools password, mobile number, shipping address, and credit card details of customers who shopped or registered on our website recently,” he said.

The business took immediate steps to secure the website after identifying the cyber incident, Murray continued.

READ MORE: Man extradited over domestic violence charges, including stalking

“We continue to work with this expert on this matter,” he said.

“Total Tools’ communications to impacted customers recommended precautions they take to lower the risk of their information being potentially misused.

“In addition to contacting impacted customers, Total Tools has also implemented several additional cyber security measures to minimise the likelihood of this occurring again. Total Tools has also informed the Australian Cyber Security Centre and Office of the Australian Information Commissioner.”

The company said the “safety” of customers and team members remained their number one priority.

Incidents such as this are rising with a new report revealing Australia recorded the highest number of data breaches in more than three years.

The Office of the Australian Information Commissioner released the data, finding that 527 breaches were recorded from January to June this year.

That figure was up nine per cent from the six months prior and the highest reported since the second half of 2020.

links to content on ABC

9News 

Read More 

Leave a Reply

Your email address will not be published. Required fields are marked *