SlideShare ist ein Scribd-Unternehmen logo
1 von 2
Downloaden Sie, um offline zu lesen
Jimmy John’s security breach latest test of consumer notice - Gate House Page 1 of 2 
> 
By Tim Landis Print Page 
Business Editor 
September 28. 2014 10:00PM 
Jimmy John’s security breach latest test of consumer notice 
Companies must provide notification to customers of credit and debit card security breaches within a reasonable time 
under Illinois law. 
In the case of Jimmy John’s, the sandwich chain learned July 30 of a data breach at more than 200 stores, but it wasn’t 
announced until Wednesday. Restaurants at 3128 S. Sixth St. and 2925 Iles Ave. in Springfield were among stores hit, 
according to the company. 
“There’s a reason,” Illinois Attorney General Lisa Madigan told The State Journal-Register. “We don’t want to 
undermine any type of criminal investigation. We want to be able to determine the source of the breach.” 
Madigan’s office is leading an investigation into the Jimmy John’s security breach. 
The Jimmy John’s location at 3128 S. 
The two-month period between discovery and public announcement at Jimmy John’s is not uncommon, said Madigan, 
Sixth St. was one of 216 Jimmy John’s 
who is seeking re-election in November. 
restaurants affected by a possible data 
“Under Illinois law, they are required to provide notice within the most expedient time possible and without 
breach. Jason Piscia/SJ-R 
unreasonable delay,” she said. 
Madigan said companies could face penalties if unnecessary delays were found or if insufficient steps were taken to protect consumer data. The Federal Trade 
Commission also announced earlier this year it would seek more authority to enforce security improvements, including consumer-notification requirements. 
Jimmy John’s, based in Champaign, said in an announcement that steps were taken to protect customers. Debit and credit card purchases made between June 
16 and Sept. 5 were affected. 
A message left with Jimmy John’s representatives was not returned Friday, but the company posted a statement on its website, jimmyjohns.com, that said the 
breach was contained and customers could safely use debit and credit cards for purchases. 
The company said login credentials for its point-of-sale system were stolen from a third-party vendor. Jimmy John’s has hired independent experts to 
investigate the break-in, according to the statement. 
“Jimmy John’s has taken steps to prevent this type of event from occurring in the future,” the statement said, “including installing encrypted swipe machines, 
implementing system enhancements, and reviewing its policy and procedures for third-party information.” 
Schnuck Markets Inc. in August reached a tentative settlement of a lawsuit resulting from a security breach at nearly 80 supermarkets in Missouri, Illinois, 
Iowa and Indiana, including two stores in Springfield. 
Approximately 2.2 million cards were affected. 
The company declined further comment other than to point out consumers received regular updates, including through the website, a toll-free hotline and the 
news media. 
Jerry Bryan of Bryan Consulting Inc. in St. Louis said clients of the communications and technology firm are advised to get information out as quickly as 
possible, including through social media, when there are problems with company products or services. 
“It runs counter to what most corporate managers believe: ‘I can’t say anything because I don’t have all the facts,’” Bryan said. “By the time you know all the 
facts, the public is blaming you.” 
He said companies must help consumers understand that the companies also have been victimized, in this case by cybercriminals. 
“Jimmy John’s had a security breach, and my first inclination is to think Jimmy John’s did this,” Bryan said. “Something has to make me slow down just 
enough to realize somebody attacked Jimmy John’s.” 
The Illinois attorney general’s office received more than 3,000 identity theft complaints in 2013, second only to 4,300 consumer debt complaints. Identity 
theft has been the fastest-growing category in recent years. 
Madigan said the question of consumer notification regularly comes up following a security breach but that consumers themselves remain the best defense 
against identity theft. 
“They should be watching their debit and credit card information,” Madigan said. “We’re encouraging them to have transaction alerts on credit and debit 
cards. There are some very basic things that should just be part of their routine.” 
*** 
Want more information? 
http://www.sj-r.com/article/20140928/News/140929507?template=printart 10/27/2014
Jimmy John’s security breach latest test of consumer notice - Gate House Page 2 of 2 
Jimmy John’s restaurant chain has posted information on the recent breach of credit and debit card purchases at jimmyjohns.com. Consumers who believe 
their card was compromised also can call (855) 398-6442. 
Additional information on identity theft is available from the Illinois attorney general’s office at illinoisattorneygeneral.gov or by calling the state identity theft 
hotline at (866) 999-5630. 
Contact Tim Landis: 788-1536, tim.landis@sj-r.com, twitter.com/timlandisSJR. 
http://www.sj-r.com/article/20140928/News/140929507 Print Page 
http://www.sj-r.com/article/20140928/News/140929507?template=printart 10/27/2014

Weitere ähnliche Inhalte

Ähnlich wie Jimmy johns infractions

Current Trends in Fraud Prevention
Current Trends in Fraud PreventionCurrent Trends in Fraud Prevention
Current Trends in Fraud Prevention
Blackbaud
 
TECH CYBER CRIME Homegrown menace Contents1. Regional trouble.docx
TECH CYBER CRIME Homegrown menace Contents1. Regional trouble.docxTECH CYBER CRIME Homegrown menace Contents1. Regional trouble.docx
TECH CYBER CRIME Homegrown menace Contents1. Regional trouble.docx
erlindaw
 
ID Theft Final Oct 2015
ID Theft Final Oct 2015ID Theft Final Oct 2015
ID Theft Final Oct 2015
James Kane
 
TBG Security Mgl93 H 201 CMR17.00 Compliance Service
TBG Security Mgl93 H 201 CMR17.00 Compliance ServiceTBG Security Mgl93 H 201 CMR17.00 Compliance Service
TBG Security Mgl93 H 201 CMR17.00 Compliance Service
gorsline
 
Identity Theft
Identity TheftIdentity Theft
Identity Theft
sarakr00
 

Ähnlich wie Jimmy johns infractions (20)

Current Trends in Fraud Prevention
Current Trends in Fraud PreventionCurrent Trends in Fraud Prevention
Current Trends in Fraud Prevention
 
Social networking and identity theft
Social networking and identity theft Social networking and identity theft
Social networking and identity theft
 
Identity Theft
Identity TheftIdentity Theft
Identity Theft
 
The Right and Wrong Ways to Prevent Identity Theft
The Right and Wrong Ways to Prevent Identity TheftThe Right and Wrong Ways to Prevent Identity Theft
The Right and Wrong Ways to Prevent Identity Theft
 
Responding to a Company-Wide PII Data Breach
Responding to a Company-Wide PII Data BreachResponding to a Company-Wide PII Data Breach
Responding to a Company-Wide PII Data Breach
 
Identity Theft Protection Services - KeepMyID
Identity Theft Protection Services - KeepMyIDIdentity Theft Protection Services - KeepMyID
Identity Theft Protection Services - KeepMyID
 
5 Tips for Executing a Great Newsjack
5 Tips for Executing a Great Newsjack5 Tips for Executing a Great Newsjack
5 Tips for Executing a Great Newsjack
 
Two payday lending schemes get shut down
Two payday lending schemes get shut downTwo payday lending schemes get shut down
Two payday lending schemes get shut down
 
Digital Coupon Fraud Executive Overview
Digital Coupon Fraud Executive OverviewDigital Coupon Fraud Executive Overview
Digital Coupon Fraud Executive Overview
 
Fighting Digital Fraud in the Insurance Industry
Fighting Digital Fraud in the Insurance IndustryFighting Digital Fraud in the Insurance Industry
Fighting Digital Fraud in the Insurance Industry
 
Ch4 q13
Ch4 q13Ch4 q13
Ch4 q13
 
Cyber breach at target.pptx
Cyber breach at target.pptxCyber breach at target.pptx
Cyber breach at target.pptx
 
Data Privacy and Security - Business Ethics.pptx
Data Privacy and Security - Business Ethics.pptxData Privacy and Security - Business Ethics.pptx
Data Privacy and Security - Business Ethics.pptx
 
TECH CYBER CRIME Homegrown menace Contents1. Regional trouble.docx
TECH CYBER CRIME Homegrown menace Contents1. Regional trouble.docxTECH CYBER CRIME Homegrown menace Contents1. Regional trouble.docx
TECH CYBER CRIME Homegrown menace Contents1. Regional trouble.docx
 
The Changing Landscape of Cyber Liability
The Changing Landscape of Cyber LiabilityThe Changing Landscape of Cyber Liability
The Changing Landscape of Cyber Liability
 
ID Theft Final Oct 2015
ID Theft Final Oct 2015ID Theft Final Oct 2015
ID Theft Final Oct 2015
 
National Consumers League 2013 State of ID Theft Report
National Consumers League 2013 State of ID Theft ReportNational Consumers League 2013 State of ID Theft Report
National Consumers League 2013 State of ID Theft Report
 
TBG Security Mgl93 H 201 CMR17.00 Compliance Service
TBG Security Mgl93 H 201 CMR17.00 Compliance ServiceTBG Security Mgl93 H 201 CMR17.00 Compliance Service
TBG Security Mgl93 H 201 CMR17.00 Compliance Service
 
Identity Theft
Identity TheftIdentity Theft
Identity Theft
 
Identity theft
Identity theftIdentity theft
Identity theft
 

Mehr von Meg Weber

Cybersecurity brochure flyer version-small
Cybersecurity brochure flyer version-smallCybersecurity brochure flyer version-small
Cybersecurity brochure flyer version-small
Meg Weber
 
2014 ota databreachguide4
2014 ota databreachguide42014 ota databreachguide4
2014 ota databreachguide4
Meg Weber
 
2014 ota databreach3
2014 ota databreach32014 ota databreach3
2014 ota databreach3
Meg Weber
 
5 questions ce os should ask about cyber risks
5 questions ce os should ask about cyber risks5 questions ce os should ask about cyber risks
5 questions ce os should ask about cyber risks
Meg Weber
 
Working with law enforcement
Working with law enforcementWorking with law enforcement
Working with law enforcement
Meg Weber
 
Nemours case study nemours embraces app innovation with mobile iron
Nemours case study  nemours embraces app innovation with mobile ironNemours case study  nemours embraces app innovation with mobile iron
Nemours case study nemours embraces app innovation with mobile iron
Meg Weber
 

Mehr von Meg Weber (20)

Small Business Administration Recommendations
Small Business Administration RecommendationsSmall Business Administration Recommendations
Small Business Administration Recommendations
 
Ri cyber-security-for-your-small-business
Ri cyber-security-for-your-small-businessRi cyber-security-for-your-small-business
Ri cyber-security-for-your-small-business
 
Department of Homeland Security Guidance
Department of Homeland Security GuidanceDepartment of Homeland Security Guidance
Department of Homeland Security Guidance
 
Reasons to be secure
Reasons to be secureReasons to be secure
Reasons to be secure
 
FCC Guidelines on Cyber Security
FCC Guidelines on Cyber SecurityFCC Guidelines on Cyber Security
FCC Guidelines on Cyber Security
 
DHS Guidelines
DHS GuidelinesDHS Guidelines
DHS Guidelines
 
Online Trust Alliance Recommendations
Online Trust Alliance RecommendationsOnline Trust Alliance Recommendations
Online Trust Alliance Recommendations
 
Cybersecurity brochure flyer version-small
Cybersecurity brochure flyer version-smallCybersecurity brochure flyer version-small
Cybersecurity brochure flyer version-small
 
2014 ota databreachguide4
2014 ota databreachguide42014 ota databreachguide4
2014 ota databreachguide4
 
2014 ota databreach3
2014 ota databreach32014 ota databreach3
2014 ota databreach3
 
5 questions ce os should ask about cyber risks
5 questions ce os should ask about cyber risks5 questions ce os should ask about cyber risks
5 questions ce os should ask about cyber risks
 
Working with law enforcement
Working with law enforcementWorking with law enforcement
Working with law enforcement
 
Welcome to the Cyber Risk Summit
Welcome to the Cyber Risk SummitWelcome to the Cyber Risk Summit
Welcome to the Cyber Risk Summit
 
WCC Programs Overview
WCC Programs OverviewWCC Programs Overview
WCC Programs Overview
 
Audit summary from security solutions and ovation tech
Audit summary from security solutions and ovation techAudit summary from security solutions and ovation tech
Audit summary from security solutions and ovation tech
 
Cyber risk scorecards
Cyber risk scorecardsCyber risk scorecards
Cyber risk scorecards
 
Jb hunt case study
Jb hunt case studyJb hunt case study
Jb hunt case study
 
Nemours case study nemours embraces app innovation with mobile iron
Nemours case study  nemours embraces app innovation with mobile ironNemours case study  nemours embraces app innovation with mobile iron
Nemours case study nemours embraces app innovation with mobile iron
 
State of indiana case study
State of indiana case studyState of indiana case study
State of indiana case study
 
Working with Law Enforcement on Cyber Security Strategies
Working with Law Enforcement on Cyber Security StrategiesWorking with Law Enforcement on Cyber Security Strategies
Working with Law Enforcement on Cyber Security Strategies
 

Kürzlich hochgeladen

Artificial Intelligence: Facts and Myths
Artificial Intelligence: Facts and MythsArtificial Intelligence: Facts and Myths
Artificial Intelligence: Facts and Myths
Joaquim Jorge
 

Kürzlich hochgeladen (20)

Scaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organizationScaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organization
 
TrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data DiscoveryTrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
 
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
 
Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...
 
Powerful Google developer tools for immediate impact! (2023-24 C)
Powerful Google developer tools for immediate impact! (2023-24 C)Powerful Google developer tools for immediate impact! (2023-24 C)
Powerful Google developer tools for immediate impact! (2023-24 C)
 
Boost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivityBoost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivity
 
A Domino Admins Adventures (Engage 2024)
A Domino Admins Adventures (Engage 2024)A Domino Admins Adventures (Engage 2024)
A Domino Admins Adventures (Engage 2024)
 
Understanding Discord NSFW Servers A Guide for Responsible Users.pdf
Understanding Discord NSFW Servers A Guide for Responsible Users.pdfUnderstanding Discord NSFW Servers A Guide for Responsible Users.pdf
Understanding Discord NSFW Servers A Guide for Responsible Users.pdf
 
Developing An App To Navigate The Roads of Brazil
Developing An App To Navigate The Roads of BrazilDeveloping An App To Navigate The Roads of Brazil
Developing An App To Navigate The Roads of Brazil
 
How to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerHow to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected Worker
 
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot TakeoffStrategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
 
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
 
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
 
Automating Google Workspace (GWS) & more with Apps Script
Automating Google Workspace (GWS) & more with Apps ScriptAutomating Google Workspace (GWS) & more with Apps Script
Automating Google Workspace (GWS) & more with Apps Script
 
Artificial Intelligence: Facts and Myths
Artificial Intelligence: Facts and MythsArtificial Intelligence: Facts and Myths
Artificial Intelligence: Facts and Myths
 
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, AdobeApidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
 
A Year of the Servo Reboot: Where Are We Now?
A Year of the Servo Reboot: Where Are We Now?A Year of the Servo Reboot: Where Are We Now?
A Year of the Servo Reboot: Where Are We Now?
 
Workshop - Best of Both Worlds_ Combine KG and Vector search for enhanced R...
Workshop - Best of Both Worlds_ Combine  KG and Vector search for  enhanced R...Workshop - Best of Both Worlds_ Combine  KG and Vector search for  enhanced R...
Workshop - Best of Both Worlds_ Combine KG and Vector search for enhanced R...
 
What Are The Drone Anti-jamming Systems Technology?
What Are The Drone Anti-jamming Systems Technology?What Are The Drone Anti-jamming Systems Technology?
What Are The Drone Anti-jamming Systems Technology?
 
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemkeProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
 

Jimmy johns infractions

  • 1. Jimmy John’s security breach latest test of consumer notice - Gate House Page 1 of 2 > By Tim Landis Print Page Business Editor September 28. 2014 10:00PM Jimmy John’s security breach latest test of consumer notice Companies must provide notification to customers of credit and debit card security breaches within a reasonable time under Illinois law. In the case of Jimmy John’s, the sandwich chain learned July 30 of a data breach at more than 200 stores, but it wasn’t announced until Wednesday. Restaurants at 3128 S. Sixth St. and 2925 Iles Ave. in Springfield were among stores hit, according to the company. “There’s a reason,” Illinois Attorney General Lisa Madigan told The State Journal-Register. “We don’t want to undermine any type of criminal investigation. We want to be able to determine the source of the breach.” Madigan’s office is leading an investigation into the Jimmy John’s security breach. The Jimmy John’s location at 3128 S. The two-month period between discovery and public announcement at Jimmy John’s is not uncommon, said Madigan, Sixth St. was one of 216 Jimmy John’s who is seeking re-election in November. restaurants affected by a possible data “Under Illinois law, they are required to provide notice within the most expedient time possible and without breach. Jason Piscia/SJ-R unreasonable delay,” she said. Madigan said companies could face penalties if unnecessary delays were found or if insufficient steps were taken to protect consumer data. The Federal Trade Commission also announced earlier this year it would seek more authority to enforce security improvements, including consumer-notification requirements. Jimmy John’s, based in Champaign, said in an announcement that steps were taken to protect customers. Debit and credit card purchases made between June 16 and Sept. 5 were affected. A message left with Jimmy John’s representatives was not returned Friday, but the company posted a statement on its website, jimmyjohns.com, that said the breach was contained and customers could safely use debit and credit cards for purchases. The company said login credentials for its point-of-sale system were stolen from a third-party vendor. Jimmy John’s has hired independent experts to investigate the break-in, according to the statement. “Jimmy John’s has taken steps to prevent this type of event from occurring in the future,” the statement said, “including installing encrypted swipe machines, implementing system enhancements, and reviewing its policy and procedures for third-party information.” Schnuck Markets Inc. in August reached a tentative settlement of a lawsuit resulting from a security breach at nearly 80 supermarkets in Missouri, Illinois, Iowa and Indiana, including two stores in Springfield. Approximately 2.2 million cards were affected. The company declined further comment other than to point out consumers received regular updates, including through the website, a toll-free hotline and the news media. Jerry Bryan of Bryan Consulting Inc. in St. Louis said clients of the communications and technology firm are advised to get information out as quickly as possible, including through social media, when there are problems with company products or services. “It runs counter to what most corporate managers believe: ‘I can’t say anything because I don’t have all the facts,’” Bryan said. “By the time you know all the facts, the public is blaming you.” He said companies must help consumers understand that the companies also have been victimized, in this case by cybercriminals. “Jimmy John’s had a security breach, and my first inclination is to think Jimmy John’s did this,” Bryan said. “Something has to make me slow down just enough to realize somebody attacked Jimmy John’s.” The Illinois attorney general’s office received more than 3,000 identity theft complaints in 2013, second only to 4,300 consumer debt complaints. Identity theft has been the fastest-growing category in recent years. Madigan said the question of consumer notification regularly comes up following a security breach but that consumers themselves remain the best defense against identity theft. “They should be watching their debit and credit card information,” Madigan said. “We’re encouraging them to have transaction alerts on credit and debit cards. There are some very basic things that should just be part of their routine.” *** Want more information? http://www.sj-r.com/article/20140928/News/140929507?template=printart 10/27/2014
  • 2. Jimmy John’s security breach latest test of consumer notice - Gate House Page 2 of 2 Jimmy John’s restaurant chain has posted information on the recent breach of credit and debit card purchases at jimmyjohns.com. Consumers who believe their card was compromised also can call (855) 398-6442. Additional information on identity theft is available from the Illinois attorney general’s office at illinoisattorneygeneral.gov or by calling the state identity theft hotline at (866) 999-5630. Contact Tim Landis: 788-1536, tim.landis@sj-r.com, twitter.com/timlandisSJR. http://www.sj-r.com/article/20140928/News/140929507 Print Page http://www.sj-r.com/article/20140928/News/140929507?template=printart 10/27/2014