Lush pickings for credit thief as site hacked

NSW Police is investigating the theft of an unknown number of credit card details from cosmetics retailer Lush after its Australian and New Zealand websites were cracked overnight.

Red lips

(Red lips image by Tania Siaz, CC2.0)

The attack follows a breach of the Lush UK website in which criminals stole credit cards between 4 October last year and 20 January 2011 and used them for fraudulent purchases. The overseas website is still offline after nearly a month. It plans to post a revamped site.

Lush Australia said customers who have made purchases through its website should contact their banks immediately and possibly cancel their credit cards.

"We are sorry to have to announce that the Lush Australia and New Zealand websites have been hacked. We have been alerted to advise us that entry has been gained and customer details have have been obtained by the hackers," the company said in a written statement.

"We urgently advise customers who have placed an online order with Lush Australia and New Zealand to contact their bank to discuss if cancelling their credit cards is advisable.

"Lush is working with the police, forensic investigators and banks and doing all that we can to investigate the breach in privacy."

The company said the UK and local websites are not linked, but did not confirm if the two use the same hosting software, which could expose both to the same vulnerabilities.

Unlike the UK arm, Lush Australia said it had reacted immediately to the breach to inform affected customers via email.

Talkback

There's a PCI QSA out there about to get sued...

SMMRSMMR February 15th, 2011
Report offensive content Reply (0) (0)

Why is this one so special? This happens all the time; sometimes (like this) the consumers get to know about it; sometime the breach is not made public to the consumers (by the merchant or by the banks), but most of the time even the merchants and banks dont know they've been fleeced until unauthorised purchases are made; and even then some arent picked up, even by the owner for cards themselves (mostly because of micro payments).

One step in the right direction would be mandatory disclosure laws. The laws wouldnt protect people for these thieves, but it'd make people more aware of what is really happening every day make people more conscious of who they give their information to.

anthonywranthonywr February 15th, 2011
Report offensive content Reply (0) (0)
Add your opinion

In order to post a comment, you need to be registered. (Sign In or register below)

Post your comment

Terms of Service - As a ZDNet registrant, and by using this service, you indicate that you agree to our Terms and Conditions and have read and understand our Privacy Policy.

Tech Blueprint

ZDNet Australia Live

Story filed for @zdnetaustralia. Please don't tell @engochick that I've waffled on for 1200 words. I'm exhausted now.

RT @markjohnston_au: Australian Privacy Laws catching up with the world http://t.co/OCU7uwqe but will this help change tickbox security to real protection?

Given the early priority given to Tasmania, it is around 90% likely that the entire state will receive the full NBN rollout as originally...

1 minute ago by Gwyntaglaw on NBN's Tassie upgrade to cost $1.3 million

NSW outlines datacentre migration plans - ZDNet Australia: NSW outlines datacentre migration plansZDNet Australi... http://t.co/MosIfczQ

NBN users opt for 100Mbps - ZDNet Australia: Brisbane TimesNBN users opt for 100MbpsZDNet AustraliaCustomers are... http://t.co/T5oBSVZQ

A relevant lesson for NZ - NBN users opt for 100Mbps http://t.co/KScaSdRI via @zdnetaustralia

RT @zdnetaustralia: #NBN users are opting for 100Mbps plans on fibre more than any other, according to NBN Co http://t.co/oTl5R1UY ^jt

RT @ninefold: Interesting Q&A on #cloud security, debating Patriot Act & more: ZDNet Australia http://t.co/qc933yKJ

#DataCentre NSW outlines datacentre migration plans - ZDNet Australia: NSW outlines datacentre migration plansZD... http://t.co/ViOllBWa

Interesting Q&A on #cloud security, debating Patriot Act & more: ZDNet Australia http://t.co/qc933yKJ

NBN users opt for 100Mbps http://t.co/YwwtyyNP

NBN users opt for 100Mbps http://t.co/5pkGDfHq via @zdnetaustralia

RT @zdnetaustralia: #NBN users are opting for 100Mbps plans on fibre more than any other, according to NBN Co http://t.co/oTl5R1UY ^jt

If you’re running 1:1 then whoever it was that did the original design did not future proof. You should aim to 10:1 for small use stati...

22 minutes ago by amckern on 30 servers to 7: BUPA redoes virtualisation

NSW outlines datacentre migration plans - ZDNet Australia http://t.co/uM54858G

NSW outlines datacentre migration plans - ZDNet Australia http://t.co/2F4qnFnF

RT @zdnetaustralia: #NBN users are opting for 100Mbps plans on fibre more than any other, according to NBN Co http://t.co/oTl5R1UY ^jt

RT @zdnetaustralia: #NBN users are opting for 100Mbps plans on fibre more than any other, according to NBN Co http://t.co/oTl5R1UY ^jt

RT @zdnetaustralia: #NBN users are opting for 100Mbps plans on fibre more than any other, according to NBN Co http://t.co/oTl5R1UY ^jt

Yes, after all when you do your personal tax return, you don't say to your accountant: "oh, give the government a couple of thousand out...

25 minutes ago by meski on Much ado about Google's tax

That would be Ayn, not Ann. And if you read Atlas Shrugged and came away with the impression of selfish, there's not much I can say to c...

28 minutes ago by meski on Much ado about Google's tax

by http://t.co/vmlLt4bh: NBN users opt for 100Mbps: Customers are picking the top fibre plan that is available on... http://t.co/5GJcYYte

NBN users opt for 100Mbps: Customers are picking the top fibre plan that is available on the National Broadband ... http://t.co/dvPawsBi

#NBN users are opting for 100Mbps plans on fibre more than any other, according to NBN Co http://t.co/oTl5R1UY ^jt

RT @zdnetaustralia: #NBN users are opting for 100Mbps plans on fibre more than any other, according to NBN Co http://t.co/oTl5R1UY ^jt

RT @zdnetaustralia: #NBN users are opting for 100Mbps plans on fibre more than any other, according to NBN Co http://t.co/oTl5R1UY ^jt

NBN users opt for 100Mbps: Customers are picking the top fibre plan that is available on the National Broadband ... http://t.co/3rJ41YBn

NSW outlines datacentre migration plans: The New South Wales Government has today revealed the cost of its datac... http://t.co/QCbazWTR

NSW outs datacentre deal details: http://t.co/A1Cj4Eot ^LH

Biometric bugs too dangerous for public? http://t.co/rDh6rXKC

Qld govt IT to be raked by audit http://t.co/LernzEK9

by http://t.co/vmlLt4bh: Qld govt IT to be raked by audit: Queensland IT Minister Ros Bates has begun the post-el... http://t.co/6VOUJv8t

Every cloud needs an SOA lining: analyst http://t.co/SjgLjFWI

Qld govt IT to be raked by audit http://t.co/9zsECPBI via @zdnetaustralia

The Queensland Government is conducting an IT audit across its agencies to find every saving it can http://t.co/1sFpAuWe ^ST

Three tips for businesses to support connected customers http://t.co/7Q9qDgvs

Android, Apple iOS run away from pack: Can Windows Phone challenge at all?: And there's little marketing behind ... http://t.co/1x9Fcs0I

Android, Apple iOS run away from pack: Can Windows Phone challenge at all?: And there's little marketing behind ... http://t.co/j5jMtvxw

Android, Apple iOS run away from pack: Can Windows Phone challenge at all?: And there's little marketing behind ... http://t.co/h5hiFPNi

Download Angry Birds Space free

1 hour ago by EminnyAssence on iiNet undercuts Internode with NBN pricing

I think the CBA point here is fairly much moot now. There was some, limited, argument for it before the NBN began, but as many people hav...

2 hours ago by seven_tech on NBN cost-benefit analyses are so 2011

Reading this article is like stepping back in time. If I was Paul Berryman I would hang my head in shame. How embarrassing!!! I can’t b...

4 hours ago by MikeSkoey on 30 servers to 7: BUPA redoes virtualisation

The registration sticker provided a visual reminder to the driver to renew regardless of what happened to the renewal letter. The experie...

4 hours ago by dccharron on NSW ditches rego stickers for tech

"xfire: Why is telecommunications being treated different to roads, water and electricity?" Good question, my guess is AUS is far behind...

4 hours ago by ngoctranminh on Five pros and cons of the NBN

Thanks for the response Luke, Given that the quotes are accurate, then the person in charge of the Vic Health App needs to find another j...

5 hours ago by butterflyeffecs on Android fragmentation steers Vic Health

Nice analogy. Another factor is whether you can find 50 people with powerful enough weapons. Minassian's argument is essentially that the...

5 hours ago by Mukimu on National Botnet Network coming: Earthwave

It's nice to see Tas finally get some decent internet connectivity, for too long Tas has been stooged on decent internet connectivity but...

5 hours ago by Jingles on NBN's Tassie upgrade to cost $1.3 million

Who is Luke Hartsuyker? He must be the Apprentice FUDster. As PaulPC has already said regional consumers want, deserve and are entitled...

5 hours ago by dickster on Regional review highlights NBN, mobile

Its good to see the NBN keeping up with the latest equipement & letting the people benefit from it. After all thats why it was a trial, ...

6 hours ago by fibretech on NBN's Tassie upgrade to cost $1.3 million

Shadow Minister for Regional Communications Luke Hartsuyker has got it wrong. Regional consumers want improved mobile services AND the NB...

6 hours ago by PaulPC on Regional review highlights NBN, mobile

Just remember that Google haven't broken any laws here, they're just doing what all their other multinational competitiors do; minimise t...

7 hours ago by Pachanga on Much ado about Google's tax

ルイヴィトン バッグ : http://www.lovebagjp.com/ Louis Vuitton bags, Louis Vuitton pretension nose about,Louis Vuitton daydre...

7 hours ago by bundLourb on Reservoir blogs: Fan fakes Tarantino diary

シャネル バッグ : http://www.bagssalejp.org/ Chanel trap,chanel shekels,gucci bags,direct purse,poor recent Louis Vuitton keep...

9 hours ago by bybrinkLync on Reservoir blogs: Fan fakes Tarantino diary

I guess but in both cases, dead body!

19 hours ago by Doubt on National Botnet Network coming: Earthwave

I think it's for the very reasons you mention in your first paragraph that there is no CBA. With the ideological differences and vested ...

20 hours ago by RealismBias on NBN cost-benefit analyses are so 2011

This story has been voted 12000 times in the last 24 hours!

1 day ago, Is Bill Gates a great leader?

This story has been voted 10 times in the last 24 hours!

2 days ago, CeBIT 2012 opens: photos

This story has been voted 15 times in the last 24 hours!

2 days ago, Lenovo ThinkPad 3G tablet (32GB)

Facebook Activity

Keep up with ZDNet Australia

ZDNet Events Calendar

ZDNet Events Calendar