UOB has announced that the personal details of 1166 customers have been disclosed by an employee as a result of an impersonation scam.
The compromised information includes customers' names, identification, mobile numbers, and account balances.
However, according to UOB, bank account numbers were not revealed, and its IT systems are still safe.
The employee has been suspended and is also assisting the police in investigations.
Source: https://mothership.sg/2021/05/uob-employee-leak-customers-scam/
TPRM report: https://scoringcyber.rankiteo.com/company/uob
"id": "uob12542123",
"linkid": "uob",
"type": "Data Leak",
"date": "05/2021",
"severity": "60",
"impact": "3",
"explanation": "Attack with significant impact with internal employee data leaks"
{'affected_entities': [{'customers_affected': 1166,
'industry': 'Finance',
'name': 'UOB',
'type': 'Bank'}],
'attack_vector': 'Impersonation Scam',
'data_breach': {'number_of_records_exposed': 1166,
'personally_identifiable_information': True,
'sensitivity_of_data': 'High',
'type_of_data_compromised': ['Personal Information']},
'description': 'UOB has announced that the personal details of 1166 customers '
'have been disclosed by an employee as a result of an '
'impersonation scam. The compromised information includes '
"customers' names, identification, mobile numbers, and account "
'balances. However, bank account numbers were not revealed, '
'and its IT systems are still safe. The employee has been '
'suspended and is also assisting the police in investigations.',
'impact': {'data_compromised': ['names',
'identification',
'mobile numbers',
'account balances']},
'investigation_status': 'Ongoing',
'response': {'law_enforcement_notified': True},
'threat_actor': 'Internal Employee',
'title': 'UOB Data Breach due to Impersonation Scam',
'type': 'Data Breach'}