Telstra resets 60k passwords after privacy gaffe

Powered by SC Magazine
 

Accounts indexed by Google.

Telstra has reset some 60,000 customer passwords after accounts were exposed forcing services to be quickly shutdown.

Telstra webmail and online billing services were offline over the weekend after a user of telco forum Whirlpool disclosed on Friday that Telstra customer information including passwords, usernames, phone numbers and addresses were indexed by Google.

Reports claimed the gaffe potentially affected up to a million customer accounts, however Telstra had reset passwords for 60,000 accounts.

Telstra disabled BigPond self-care, online billing and the My Account functions at 5pm Friday, an hour after the hole was publicly disclosed.

The offending web pages appeared to be entries in a system hosted by Oracle-owned SaaS vendor RightNow, presumably for use by Telstra contact centre staff.

Within hours of the Whirlpool posting, journalists at the Sydney Morning Herald had reported the breach, before Telstra has been given the opportunity to resolve the issue.

Services have now been restored.

"Rest assured, a full investigation is underway so we can put in place measures to stop this happening again," said Peter Jamieson, Telstra's executive director of customer service on the company’s blog on Saturday.

Telstra’s contact centre agents were unable to handle the volume of calls from customers concerned their details had been exposed.

“Unfortunately we are experiencing delays in answering calls due to high call volumes at the moment. We sincerely apologise if we do keep you waiting and will get through to you as soon as soon as we can,” said Danielle Horan, head of online and social media at Telstra.

The company closed down any comment on its social media site but promised comments would be published today.

Telstra representatives responding to inquiries on Twitter ambitiously offered for the company to contact all impacted customers “early in the week to discuss further".

- With Darren Pauli

Copyright © iTnews.com.au . All rights reserved.


Telstra resets 60k passwords after privacy gaffe
 
 
 
Top Stories
The True Cost of BYOD - 2014 survey
Twelve months on from our first study, is BYOD a better proposition?
 
Photos: Unboxing the Magnus supercomputer
Pawsey's biggest beast slots into place.
 
ANZ looks to life beyond the transaction
If digital disruptors think an online payments startup could rock the big four, they’ve missed the point of why people use banks, says Patrick Maes.
 
 
Sign up to receive iTnews email bulletins
   FOLLOW US...
Latest Comments
Polls
What is delaying adoption of public cloud in your organisation?







   |   View results
Lock-in concerns
  29%
 
Application integration concerns
  3%
 
Security and compliance concerns
  28%
 
Unreliable network infrastructure
  9%
 
Data sovereignty concerns
  21%
 
Lack of stakeholder support
  3%
 
Protecting on-premise IT jobs
  4%
 
Difficulty transitioning CapEx budget into OpEx
  3%
TOTAL VOTES: 1068

Vote