Skip to main content

Involved in a data breach? Here’s what you need to know

 A bowl of multicolored cereal hoops spilled on a white floor

Posted: September 21, 2023 by

If you've received a message from a company saying your data has been caught up in a breach, you might be unsure what to do next. We've put together some tips which should help you when the (more or less) inevitable happens.

1. Check the company’s advice

Every breach is different, so check the company's official channels to find out what's happened and what data has been breached. Organizations often put out a rolling statement on their website, blog, or X (Twitter). Follow any specific advice they offer first, and keep an eye out for any further communications.

2. Change your password

If your password has been caught up in a breach, you should immediately change it. If you've used the same password on another site or service then you also need to change that. Cybercriminals will often try one password on multiple sites because they know people reuse them, so make sure you use a different password for every single site you have an account on. If you don't already use one, it's worth considering a password manager, which will generate and store passwords for you so you don't have to remember them all in your head.

3. Enable multi-factor authentication

Multi-factor authentication (MFA) adds an extra layer of security when logging in to your online accounts, and stops anyone from logging in with just your password. One of the most common ways of adding MFA to your online accounts is with an app—such as Google Authenticator, Authy, or Microsoft Authenticator—which generates a code that you enter into the site you're logging into. You can also use SMS MFA, where you are sent a code via text that you then enter into the website, or a hardware key such as a YubiKey which you plug into your computer. 

It's worth bearing in mind that a code can be phished as easily as a password so code-based MFA can't protect you from phishing, but it's still much better to have it turned on than not use it at all. Remember to never give an MFA code to anyone else, even if they pressure you into revealing it.

4. Freeze your credit report

If you're in the US, a credit freeze stops new creditors and potential thieves from accessing your credit report. Credit freezes must be set (and removed) at each of the three bureaus.

5. Set up credit monitoring

Credit monitoring tracks your credit report and borrowing behavior and alerts you if anything changes. A breached company may offer this as a service to you, but you can also get different levels of monitoring solutions, depending on your individual need.

6. Watch out for scammers

Scammers often try to take advantage of data breaches. They know that the breached company is likely to be contacting victims, and that the victims will be looking out for emails from the company. It's easy to spoof an email to make it look like it comes from somewhere else, and then send someone malware or a link to a phishing site.

We suggest you monitor the company's website for information about the breach and be very sceptical of messages that appear to come from that company. All the usual advice applies: Look for inconsistencies, odd email addresses, and strange links, and watch out for the two major red flags: urgency and a request for money or personal information.

Comments

Popular posts from this blog

Unlocking the Future: How Generative AI is Transforming Credit Unions

  Unlocking the Future: How Generative AI is Transforming Credit Unions In the rapidly evolving financial landscape, technology plays an increasingly pivotal role. Among the most exciting advancements is Generative AI, which is poised to transform how credit unions operate and serve their members. Read on to discover how generative AI can reshape the member experience and optimize operations within credit unions. What is Generative AI? Generative AI refers to a class of artificial intelligence that can create new content—such as text, images, and audio—based on existing data. Unlike traditional AI, which focuses on analyzing and recognizing patterns, generative AI synthesizes new information, offering exciting possibilities for financial institutions, particularly credit unions. The Applications of Generative AI in Credit Unions Personalized Financial Advice Credit unions pride themselves on their member relationships, and generative AI can enhance these connections....

Sunday Reading - What is the Declaration of Independence?

What is the Declaration of Independence ? The Declaration of Independence is the founding document that formally announced the American colonies' break from British rule. It laid the philosophical and moral foundation for American democracy, asserting that individuals possess inherent rights and that governments must be accountable to the people ( read summary here ). Although Thomas Jefferson is often remembered as the sole author ( read initial draft ), extensive collaboration shaped the Declaration. Benjamin Franklin and John Adams made small but impactful revisions— including Franklin’s reported suggestion  to change “We hold these truths to be sacred and undeniable” to “self-evident”—before submitting the draft to Congress. On July 4, 1776, the final text was adopted and sent to printer John Dunlap, who produced an estimated 200 broadsides that night—but that wasn’t the actual day of American independence . Congress had voted for independence two days earlier, ...

👨‍👩‍👧‍👦 You Need to Prepare Now to Compete for New Fed Gov’t Funded Savings Accounts for Children

WASHINGTON–Credit unions, which often talk about the need for younger members, will now have the opportunity to compete in a new arena for the youngest members of all, as the recently passed reconciliation bill includes language creating and funding for a new savings account for children, with a one-time deposit of $1,000 from the federal government for those born in 2025 through 2028. The new accounts are expected to create a new battleground of competition for credit unions as every provider from banks to fintechs to others seeks to capture the accounts.  The final version of the bill makes the tax-free savings accounts for minors, called Trump accounts, a form of individual retirement account (IRA) under Sec. 408(a), according to the Journal of Accountancy. Under the legislation, the accounts will be IRAs (but not Roth IRAs) for the exclusive benefit of individuals under 18.  About the Contributions “Contributions can only be made in calendar years before the beneficia...

Open Banking To Hit $94B By 2029—But U.S. Lags Amid Global Surge

Watch our Video on Understanding Open Banking NEW YORK—By 2029, open banking is projected to surge globally to a staggering $94.14 billion in value. Yet despite its rapid evolution and expanding global footprint, adoption remains uneven—hindered by inconsistent regulatory frameworks across countries. According to GlobalData, this disparity poses a key challenge for the sector’s success, with the U.S. notably trailing behind global peers in embracing open banking. The U.K. pioneered open banking and continues to be one of the leaders globally. The country has seen the number of users increasing, with there being 12.09 million active users of open banking in 2024 and 223.9 million payments made. This is an increase of 72% compared to the year before. “As open banking continues to flourish, it is positive to see that the Financial Conduct Authority (FCA) and Payment Systems Regulator (PSR) have outlined how open banking can expand further in the U.K., and also be used in variable...

Live Podcast with Bonnie Sensing, Executive VP of Nashville Firemen's Credit Union on BSA

Jo in us in this live episode as Grant Sheehan, CCUE | CEO of the National Council of Firefighter Credit Unions (NCOFCU), interviews Bonnie Sensing, Executive VP of Nashville Firemen's Credit Union. We break down the BSA complex regulations, explore BSA compliance strategies, and discuss real-world implications for directors and staff. BSA Podcast YouTube NCOFCU Podcasts