Cancer Research UK targeted by Russian hackers

Cancer Research UK has been targeted by Russian hackers, according to reports appearing in national newspapers this weekend.
RiskIQ, a cybersecurity consultancy, said the group “tried to steal the card details of people in the UK who had brought items through the cancer charity’s online gift shop”.
According to the Daily Telegraph: “Cancer Research UK runs an online shop where customers can buy items including skin treatment lotions and bandanas for chemotherapy patients.
“The hackers planted malicious code into Cancer Research UK’s website, which was designed to siphon off the credit card information of people who made purchases through the site.”
A spokeswoman for the charity confirmed that CRUK shops had been hacked in June 2016, but said no credit card information had been stolen.
She also provided a statement from Nigel Armitt, chief financial officer at CRUK, which said: “We advised customers who might have been affected to contact their bank as a preventative measure, so they could be advised if any additional action needed to be taken.
“The online store services were immediately disabled to ensure the exposure was limited and a subsequent investigation conducted by a third-party firm confirmed that there were no supporters impacted by the event.
“The investigation of this incident and its containment was our highest priority.
“Our life-saving work is only possible thanks to public support. We take online data protection and cyber security extremely seriously.
“We reported the incident to the Information Commissioner’s Office, who were fully apprised of the situation and took no further action.”
CRUK was one of a number of UK-based companies and organisations targeted by the same group, which included British Airways and Ticketmaster.
The ICO has been contacted for a comment.
Source civilsociety
Industry: Cyber Security News

Latest Jobs
-
- OUTSIDE IR35 Contract- Functional tester- SC clearance Microsoft Windows Server
- London
- Outside IR35 contract
-
Front End Functional tester with SC clearance needed for an Outside IR35 project. Current valid SC clearance is required Experience with functional testing with exchange, sharepoint, SQL and other applications relating across a windows server Migration to 2019. Must be able to get to Central London 3 days a week. Jira, Wiki documentation and automation experience highly desirable.
-
- ForgeRock Consultant- UK
- United Kingdom
- Upto £100,000 plus benefits
-
ForgeRock Consultant/ Architect is require for niche consultancy who are looking to expand their presence within the UK/European Market Looking for a lead IAM architect, ideally with ForgeRock experience but would consider other vendors, But looking for someone who is able to advice and consultant with Clients but have the implementation background so they can get involved in projects as and when needed. Key duties will be: Provider IAM consultancy to clients, with a focus on ForgeRock Product stack ·Responsible for the design and implementation of ForgeRock solutions ·Install and configure ForgeRock stack to meet customer authentication and authorization requirements, ·Design and implement OAuth2 protocol using ForgeRock OpenAM, ·Design and develop OpenAM custom authentication modules, ·Configure ForgeRock stack to protect RESTful API, ·Troubleshoot and support ForgeRock IAM stack. This is a great role to join a niche play as they look to kick of their European expansion
-
- ForgeRock Consultant- Netherlands
- Netherlands
- N/A
-
ForgeRock Consultant required for 6 Month Contract This will be a mix of on site and home based, so need people to be based in the Netherlands We are looking for a lead ForgeRock Technical Consultant/ Architect with strong experience of ForgeRock to lead a new deployment project. ·Responsible for the design and implementation of ForgeRock stack ·Install and configure ForgeRock stack to meet customer authentication and authorization requirements, ·Design and implement OAuth2 protocol using ForgeRock OpenAM, ·Design and develop OpenAM custom authentication modules, ·Configure ForgeRock stack to protect RESTful API, ·Troubleshoot and support ForgeRock IAM stack. ·Designed and developed Restful APIs, This is a great project with an expanding leading IAM player within Europe, We are looking for someone with the above experience, who is comfortable hitting the ground running and taking on the reins at the start of a project