Petco Confirms Data Breach Affecting Customer Information
Petco has announced that a data breach exposed sensitive customer information. The company revealed this through a state filing, noting that a configuration issue in one of its software applications allowed certain files to be accessible online. They claim the issue has been rectified, but the repercussions are considerable.
Details of the Breach
The compromised data includes names, Social Security numbers, driver’s license numbers, financial account details, credit or debit card numbers, and birth dates, according to a report submitted to the Texas Attorney General’s Office. Affected individuals from additional states have also been identified through filings in California, Massachusetts, and Montana.
In California, companies must report breaches affecting at least 500 state residents. While Petco hasn’t disclosed exact figures, it indicates that the number of affected individuals is likely higher. For context, Petco served over 24 million customers in 2022.
Notifications have been sent out to those whose information was impacted. A sample notice from the California Attorney General indicates that a specific software setting exposed certain files online. Petco has since removed these files, corrected the settings, and implemented enhanced security measures.
The company is providing free credit and identity theft monitoring to victims in California, Massachusetts, and Montana. However, it is unclear if similar assistance is being offered to impacted residents in Texas.
When contacted for comments, a representative from Petco stated, “We recently had one of our applications inadvertently post certain data. Once we identified the settings that allowed access to the files, we took immediate corrective actions and initiated an investigation. We view this incident seriously and are committed to strengthening the security of our network to prevent future occurrences.”
What This Means for You
The exposure of government IDs, financial information, and birth dates can pose long-term risks. Criminals may use this data to open new accounts, hijack existing accounts, or pass background checks. Even if fraud doesn’t happen right away, the compromised information can linger in criminal circles for years.
Steps to Stay Safe After a Breach
1) Freeze Your Credit
Placing a freeze on your credit can block new accounts from being opened in your name. It prevents criminals from using stolen information to secure loans or credit cards. You can freeze your credit for free with Equifax, Experian, and TransUnion.
2) Apply Two Additional Freezes
Consider additional freezes on accounts not managed by major credit bureaus. Specifically, freeze ChexSystems to block unauthorized checking or savings accounts and NCTUE to prevent fake phone, cable, or utility accounts from being set up.
3) Enable Account Alerts
Activating alerts for your banking, credit card, and online shopping accounts will help you detect suspicious activities quickly.
4) Use a Password Manager
Strong, unique passwords can safeguard against credential stuffing attacks. A password manager can assist you in creating distinct passwords for each account, reducing the chances of an attack.
Check if your email has been exposed in any past breaches. A password manager with a built-in breach scanner can notify you if your information appears in any known leaks. If it does, change your passwords immediately.
5) Monitor Your Identity
If Petco is providing free identity theft monitoring, it’s wise to enroll promptly. This service can help you catch fraudulent activities that may arise months or years later.
6) Remove Exposed Personal Data
Various data broker sites collect and distribute personal information, increasing your risk. While no service can provide complete data removal, a data deletion service can monitor and remove your information from several websites, minimizing your exposure.
7) Be Wary of Phishing and Install Strong Antivirus Software
Criminals often follow up with seemingly legitimate emails or texts after a breach. Review all communications carefully before clicking on any links. Strong antivirus software can protect you from malicious links and alert you about potential threats.
Summary
Data breaches are unfortunately commonplace, often containing information that can lead to devastating consequences. Taking proactive measures can help mitigate the risks of fraud and limit your data’s availability to potential criminals.
