Technology
Hackers target Denmark's Tivoli park, guests info stolen
Copenhagen, Aug 17
The Copenhagen-based Tivoli, one of the oldest and most popular amusement parks in Europe, has now joined the unfortunate online "rogues gallery" of major Danish companies whose customer data has been hacked from their websites.
Details about the extent of the early August hack into the website of Denmark's premier tourist destination were made public on Saturday.
Hackers targeted My Tivoli, a site where guests can login and access Tivoli products and annual cards. They can use My Tivoli to access the theme park and get an overview of past purchases, Xinhua news agency reported.
Tivoli, the spiritual home of over 4 million thrill-seeking visitors, admitted that this popular website had been compromised when up to a thousand guests had their personal information -- names, addresses, phone numbers, e-mail addresses, date of birth and information about guests' previous purchases at Tivoli, even credit card information -- stolen.
Jonas Buhl Gregersen, Tivoli's Director of IT and Business Development, deemed the hack "intelligent" rather than a classic "brute force attack".
During this attack on My Tivoli, Gregersen said that there were a maximum of three logins with the same email address and a maximum of two with the wrong password.
In contrast, a brute force hack would have tried to log in with the same email address continuously for a prolonged period.
Gregersen said the hack was discovered quickly by vigilant website administrators who noticed an unusual spike in customer logins.
The spike occurred due to innocent guests logging in to their account, along with hackers, after they received an automatic email from Tivoli informing them that their My Tivoli profile had been logged onto from a different device.
Despite the breach, Gregersen could provide no good explanation as to the motives of the attackers, only suggesting that hackers may have have been testing the systems security, "curious" about what could be done.
No similar incidents had ever happened on the My Tivoli website before this.
Immediately following the discovery of the hack, all affected customers were both informed and assured that no credit cards were used to make purchases. The site was now secure.
The incident was reported to both the police and the Danish Data Inspectorate.
Details about the extent of the early August hack into the website of Denmark's premier tourist destination were made public on Saturday.
Hackers targeted My Tivoli, a site where guests can login and access Tivoli products and annual cards. They can use My Tivoli to access the theme park and get an overview of past purchases, Xinhua news agency reported.
Tivoli, the spiritual home of over 4 million thrill-seeking visitors, admitted that this popular website had been compromised when up to a thousand guests had their personal information -- names, addresses, phone numbers, e-mail addresses, date of birth and information about guests' previous purchases at Tivoli, even credit card information -- stolen.
Jonas Buhl Gregersen, Tivoli's Director of IT and Business Development, deemed the hack "intelligent" rather than a classic "brute force attack".
During this attack on My Tivoli, Gregersen said that there were a maximum of three logins with the same email address and a maximum of two with the wrong password.
In contrast, a brute force hack would have tried to log in with the same email address continuously for a prolonged period.
Gregersen said the hack was discovered quickly by vigilant website administrators who noticed an unusual spike in customer logins.
The spike occurred due to innocent guests logging in to their account, along with hackers, after they received an automatic email from Tivoli informing them that their My Tivoli profile had been logged onto from a different device.
Despite the breach, Gregersen could provide no good explanation as to the motives of the attackers, only suggesting that hackers may have have been testing the systems security, "curious" about what could be done.
No similar incidents had ever happened on the My Tivoli website before this.
Immediately following the discovery of the hack, all affected customers were both informed and assured that no credit cards were used to make purchases. The site was now secure.
The incident was reported to both the police and the Danish Data Inspectorate.
6 hours ago
Canadian MP Chandra Arya submits compliance deposit to Liberal Party for leadership contest
6 hours ago
'Will be forced to go dark': TikTok issues statement ahead of possible shutdown in the US
6 hours ago
Indian global outreach group meets Elon Musk in Texas
7 hours ago
US House of Representatives passes US-Taiwan Double Taxation Relief Bill
7 hours ago
Elon Musk hosts India Global Forum business delegation at SpaceX
7 hours ago
Inauguration to be held inside US Capitol due to severe weather: Trump
8 hours ago
Heavy traffic congestion expected in Chennai as 12 Lakh commuters return post Pongal
8 hours ago
Satellite payload crash in Karnataka village sparks panic; no injuries reported
8 hours ago
DMK legal wing meet: ‘One Nation, One Election’ will not benefit states, say Sibal, Quraishi
8 hours ago
JEE aspirant commits suicide in Kota just four days before exam
8 hours ago
Civilian killed in blaze at army canteen in Srinagar Cantonment
8 hours ago
Man, who raped and blackmailed minor with private videos in Karnataka, arrested
8 hours ago
Sanjay Roy convicted in RG Kar rape and murder case, sentence to be pronounced on Monday