Technology
Hackers target Denmark's Tivoli park, guests info stolen
Copenhagen, Aug 17
The Copenhagen-based Tivoli, one of the oldest and most popular amusement parks in Europe, has now joined the unfortunate online "rogues gallery" of major Danish companies whose customer data has been hacked from their websites.
Details about the extent of the early August hack into the website of Denmark's premier tourist destination were made public on Saturday.
Hackers targeted My Tivoli, a site where guests can login and access Tivoli products and annual cards. They can use My Tivoli to access the theme park and get an overview of past purchases, Xinhua news agency reported.
Tivoli, the spiritual home of over 4 million thrill-seeking visitors, admitted that this popular website had been compromised when up to a thousand guests had their personal information -- names, addresses, phone numbers, e-mail addresses, date of birth and information about guests' previous purchases at Tivoli, even credit card information -- stolen.
Jonas Buhl Gregersen, Tivoli's Director of IT and Business Development, deemed the hack "intelligent" rather than a classic "brute force attack".
During this attack on My Tivoli, Gregersen said that there were a maximum of three logins with the same email address and a maximum of two with the wrong password.
In contrast, a brute force hack would have tried to log in with the same email address continuously for a prolonged period.
Gregersen said the hack was discovered quickly by vigilant website administrators who noticed an unusual spike in customer logins.
The spike occurred due to innocent guests logging in to their account, along with hackers, after they received an automatic email from Tivoli informing them that their My Tivoli profile had been logged onto from a different device.
Despite the breach, Gregersen could provide no good explanation as to the motives of the attackers, only suggesting that hackers may have have been testing the systems security, "curious" about what could be done.
No similar incidents had ever happened on the My Tivoli website before this.
Immediately following the discovery of the hack, all affected customers were both informed and assured that no credit cards were used to make purchases. The site was now secure.
The incident was reported to both the police and the Danish Data Inspectorate.
Details about the extent of the early August hack into the website of Denmark's premier tourist destination were made public on Saturday.
Hackers targeted My Tivoli, a site where guests can login and access Tivoli products and annual cards. They can use My Tivoli to access the theme park and get an overview of past purchases, Xinhua news agency reported.
Tivoli, the spiritual home of over 4 million thrill-seeking visitors, admitted that this popular website had been compromised when up to a thousand guests had their personal information -- names, addresses, phone numbers, e-mail addresses, date of birth and information about guests' previous purchases at Tivoli, even credit card information -- stolen.
Jonas Buhl Gregersen, Tivoli's Director of IT and Business Development, deemed the hack "intelligent" rather than a classic "brute force attack".
During this attack on My Tivoli, Gregersen said that there were a maximum of three logins with the same email address and a maximum of two with the wrong password.
In contrast, a brute force hack would have tried to log in with the same email address continuously for a prolonged period.
Gregersen said the hack was discovered quickly by vigilant website administrators who noticed an unusual spike in customer logins.
The spike occurred due to innocent guests logging in to their account, along with hackers, after they received an automatic email from Tivoli informing them that their My Tivoli profile had been logged onto from a different device.
Despite the breach, Gregersen could provide no good explanation as to the motives of the attackers, only suggesting that hackers may have have been testing the systems security, "curious" about what could be done.
No similar incidents had ever happened on the My Tivoli website before this.
Immediately following the discovery of the hack, all affected customers were both informed and assured that no credit cards were used to make purchases. The site was now secure.
The incident was reported to both the police and the Danish Data Inspectorate.
9 hours ago
Malayalam film ‘Half’ makes history at TIFF; becomes first Malayalam film to be screened in the Midnight Madness section
9 hours ago
Nagoya illuminates Asia: Manu Bhaker, Pawan Sehrawat lead India as Games ‘declared open’
9 hours ago
Jaipur Literature Festival opens Seattle edition with defence of reading, human imagination
13 hours ago
Sudhir Mishra on directing veteran actor Waheeda Rehman: It fills me with immense joy
13 hours ago
Zubeen Garg's first death anniversary: Fans gather in Sonapur, renew call for justice
13 hours ago
Abducted, converted, forced to marry: Pakistan’s minority girls face systematic abuse
13 hours ago
Mexico-US trade talks making progress: President Sheinbaum
13 hours ago
Reading is resistance, Congresswoman Pramila Jayapal tells Seattle
13 hours ago
Jaipur Literature Festival opens Seattle edition with defence of reading, human imagination
13 hours ago
Kerala: Reporter TV MD Anto Augustine handed over to Excise custody for a day
13 hours ago
Derogatory hoardings spark controversy ahead of LoP Rahul Gandhi’s 'Chhatron Ki Goonj’ event in Indore
13 hours ago
India's startup story is no longer confined to big cities; youth from small towns play key role: PM Modi
13 hours ago
Two boys killed in tractor accident during Ganesh immersion procession in Karnataka's Raichur
