Yazılar

WestJet Investigates Cybersecurity Breach Impacting Mobile App and Internal Systems

WestJet Airlines of Canada is currently investigating a cybersecurity incident that has disrupted access to its mobile app and certain internal systems, the airline announced in a statement on Friday. The breach has affected an unspecified number of users.

WestJet said that specialized internal teams are working closely with law enforcement agencies and Transport Canada to contain the impact and determine the full extent of the security breach.

“We are expediting efforts to safeguard sensitive data and personal information for both our guests and employees,” the airline said, while also noting it is too soon to speculate on the cause or scope of the incident.

Despite the disruption, a company spokesperson confirmed that WestJet’s flight operations remain safe and fully unaffected.

This incident adds to a growing trend of cyber threats targeting critical infrastructure in Canada. Earlier in April, energy company Emera and its subsidiary Nova Scotia Power reported unauthorized access to their networks and business servers.

Coinbase Hit with Several Lawsuits Following User Data Breach: Report

Coinbase is currently facing mounting legal challenges following a recent data breach that compromised user information. Over the weekend, at least six lawsuits were filed against the US-based cryptocurrency exchange, according to a report by CoinTelegraph. The lawsuits accuse Coinbase of failing to adequately protect user data and mishandling the breach response, which has left many users worried about increased exposure to financial fraud and identity theft.

These legal actions were initiated between May 15 and May 16, with the majority filed in courts located in New York, while at least one case has been lodged in California. Public court records reveal the increasing pressure on Coinbase from affected users seeking accountability and compensation for potential damages caused by the security lapse.

According to the lawsuits, Coinbase allegedly failed to properly train its staff and implement robust security measures, contributing to the breach. Plaintiffs argue that as one of the world’s largest crypto exchanges, Coinbase should have maintained stronger defenses to protect its customers. Additionally, the complaints highlight the company’s slow and insufficient communication about the breach, criticizing delays in disclosing details and taking meaningful action to mitigate risks.

One suit even alleges “unjust enrichment,” suggesting Coinbase benefited financially without investing enough in its cybersecurity infrastructure. While Coinbase has yet to publicly address these lawsuits directly, it confirmed last week that it is cooperating with the Securities and Exchange Commission (SEC) and law enforcement agencies to track down the attackers responsible for the breach.

Coinbase Could Owe Up to $400 Million in Customer Reimbursements Following Cyberattack

Coinbase has confirmed it was the target of a recent cyberattack that compromised user accounts and led to financial losses for some of its customers. The cryptocurrency exchange revealed in a filing with the U.S. Securities and Exchange Commission (SEC) that the company will voluntarily reimburse affected users. Based on a preliminary assessment, Coinbase estimates that the remediation costs could range between $180 million and $400 million. The attack reportedly involved false claims and exploitation of exposed user data.

According to the SEC 8-K filing submitted on May 14, Coinbase clarified that the financial impact remains under review and could vary as additional factors are considered. These factors include potential indemnification claims and any successful recovery efforts. The company emphasized its commitment to strengthening internal safeguards and improving anti-fraud mechanisms to prevent similar breaches in the future. One of the steps being taken is the establishment of a new customer support hub in the United States, alongside other defense enhancements.

Coinbase CEO Brian Armstrong shed more light on the breach, explaining that the attackers managed to bribe offshore support personnel to gain unauthorized access to the personal data of a small fraction of users—reportedly less than one percent. Once in possession of this data, the attackers contacted Coinbase and demanded a ransom of $20 million, threatening to leak the compromised information if the demand was not met. Armstrong has rejected the ransom demand outright, signaling the company’s refusal to engage with cybercriminals.

Instead of yielding to extortion, Armstrong announced the creation of a $20 million reward fund for anyone who can provide verifiable information leading to the identification and capture of the attackers. Coinbase stated in its SEC filing that the threat appeared credible, prompting urgent action to both contain the breach and pursue justice. The incident underscores the increasing sophistication of cyber threats facing digital asset platforms and highlights the importance of robust security measures in the crypto industry.