Originally posted by ResistTheSun
Third time the company has suffered from this. According to reports appears they did take some steps to protect certain data.
Third breach within 12 months some of that data could be old information. Incomplete financial information has been leaked appears that was protected more which is normal practise. British gas along with Vodafone have reported smaller scale ones. TalkTalk are saying this newest one is not that serious and smaller. Morrison one last year was from ex employee who was fired and went to prison for fraud or something.
I have a friend on Facebook who does all nerdy kind of stuff. Mostly reporting exploits to companies apart of their bounty programs. He's followed it closely and even posted some screenshots of all the information for sale such as "emails, plain text passwords, bank information, addresses and phone numbers".
Also he posted:
"Not all of the data was encrypted. We constantly review and update our systems to make sure they are as secure as possible. We’re working with the police and cyber security experts to understand what happened and protect as best we can against similar attacks in future.
Shame on TalkTalk for not encrypting CC/bank information."