Ticketmaster suffers data breach despite warning

Ticketmaster has admitted that 40,000 customers’ personal information and credit card details have been compromised in a data breach on Saturday.

The company said in a statement that its systems had been hit by “malicious software” through a third-party supplier to the site. Ticketmaster said that the affected accounts – five per cent of the firm’s customer base – have been contacted and advised to change their password.

A statement from Ticketmaster read: “On Saturday, June 23, 2018, Ticketmaster UK identified malicious software on a customer support product hosted by Inbenta Technologies, an external third-party supplier to Ticketmaster. As soon as we discovered the malicious software, we disabled the Inbenta product across all Ticketmaster websites.

“As a result of Inbenta’s product running on the Ticketmaster UK website, some of our customers’ personal or payment information may have been accessed by an unknown third-party.”

The company said that anyone who had purchased or attempted to purchase tickets from the site between February and June 23 of this year could have been affected.

In a blog post, digital challenger bank Monzo said it spotted signs of the breach in early April and proactively replaced the cards of all Monzo customers who could have been affected.

It said: “After investigating, our Financial Crime and Security team noticed a pattern: 70 per cent of the customers affected had used their cards with the same online merchant between December of last year and April this year. That merchant was Ticketmaster. This seemed unusual, as overall only 0.8 per cent of all our customers had used Ticketmaster.”

Monzo said it warned the ticket sales company of the obvious patterns of fraud, but Ticketmaster came back and said they had found no evidence of a breach following an internal investigation, and no other banks were reporting similar patterns.

    Share Story:

Recent Stories


Sanctions evasion in an era of conflict: Optimising KYC and monitoring to tackle crime
The ongoing war in Ukraine and resulting sanctions on Russia, and the continuing geopolitical tensions have resulted in an unprecedented increase in parties added to sanctions lists.

Achieving operational resilience in the financial sector: Navigating DORA with confidence
Operational resilience has become crucial for financial institutions navigating today's digital landscape riddled with cyber risks and challenges. The EU's Digital Operational Resilience Act (DORA) provides a harmonised framework to address these complexities, but there are key factors that financial institutions must ensure they consider.

Legacy isn’t the enemy: what FSIs can do to keep their systems up and running
In this webinar we will examine some of the steps FSIs have already taken to rigorously monitor and test systems – both manually and with AI-powered automation – while satisfying the concerns of regulators and customers.

Optimising digital banking: Unifying communications for seamless CX
In the digital age, financial institutions risk falling behind their rivals if they fail to unite fragmented communications ecosystems to deliver seamless, personalised customer experiences.

This FStech webinar sponsored by Precisely explores vital strategies to optimise cross-channel messaging through omnichannel orchestration and real-time customer data access.