Stay up to date with notifications from The Independent

Notifications can be managed in browser preferences.

Dell changes every user's password after cyber attack that could have leaked data

Customers will receive emails informing them of the change

Andrew Griffin
Thursday 29 November 2018 12:03 GMT
Comments
Dell logo is pictured on the front of a computer
Dell logo is pictured on the front of a computer (REUTERS/Carlo Allegri/File Photo)

Dell has changed every single one of its user passwords on its store, after a major cyber attack.

The company said that it had found and stopped hackers who were trying to break into its systems. But it would change the passwords to ensure that all data was safe, it said.

The company has been criticised for being slow in informing users of the change and the potential breach. The reset happened on 14 November, five days after the hackers were discovered, and users were only informed this week.

Customers were not told about the hack or the reset passwords until it chose to disclose the entire hack.

Dell said in a statement that on 9 November the company detected and stopped hackers who had breached its network and were attempting to steal customer data. Investigators found no evidence that the hackers succeeded, but have not ruled out the possibility that they did steal some data, the company said.

They only sought customer names, email addresses and scrambled passwords, Dell said.

The breach occurred as companies come under increasing scrutiny from regulators worldwide to provide quick and accurate disclosure of customer data theft. The European Union implemented strict new privacy regulations in May that punish violators with fines of up to 20 million euros ($23 million), or 4 percent of global revenue, whichever is higher.

Dell determined that there were no regulatory or legal requirements that it disclose the incident, but decided to come forward "with customer trust in mind," according to the source.

Dell declined to say how many accounts were affected, but did say that payment information and Social Security numbers were not targeted.

Dell said it reported the matter to law enforcement. Representatives with the Federal Bureau of Investigation could not immediately be reached for comment.

Additional reporting by Reuters

Join our commenting forum

Join thought-provoking conversations, follow other Independent readers and see their replies

Comments

Thank you for registering

Please refresh the page or navigate to another page on the site to be automatically logged inPlease refresh your browser to be logged in