The Slim CD, Inc., a prominent payment processing gateway for US and Canadian merchants, has disclosed a data breach affecting approximately 1.7 million users.
The unauthorized access between August 17, 2023, and June 15, 2024, potentially exposed sensitive credit card information of customers whose payments were processed through Slim CD’s electronic payment system.
The company became aware of suspicious activity in its computer environment on June 15, 2024. Upon discovery, Slim CD immediately launched an investigation, engaging third-party specialists to determine the full scope of the incident.
Decoding Compliance: What CISOs Need to Know – Join Free Webinar
The investigation revealed that an unauthorized actor may have viewed or obtained certain credit card information between June 14 and June 15, 2024.
The types of information potentially impacted by this breach include:
- Names
- Addresses
- Credit card numbers
- Card expiration dates
It’s important to note that while this information was potentially accessed, Slim CD has stated that they currently have no evidence of the compromised data being used for identity theft or fraud.
Slim CD has taken several steps in response to the breach:
- Implementing additional safeguards
- Reviewing and updating data privacy and security policies
- Reporting the incident to federal law enforcement and regulatory authorities
- Notifying affected individuals via email starting September 6, 2024
The company has also set up an assistance line for individuals with questions about the breach.
Slim CD is advising potentially affected individuals to:
- Remain vigilant against incidents of identity theft and fraud
- Review account statements and explanations of benefits
- Monitor free credit reports for suspicious activity
- Consider placing a fraud alert or credit freeze on their credit files
This breach highlights the ongoing challenges in securing payment processing systems and the potential vulnerabilities in the financial technology sector.
As cybercriminals continue to target payment gateways, companies must remain vigilant and continuously update their security measures to protect sensitive customer data.
As the investigation continues, Slim CD and affected individuals will need to remain alert for any signs of data misuse in the coming months.
Download Free Incident Response Plan Template for Your Security Team – Free Download