2012
May
April
March
Febuary
January
2011
2010
2009
2008

Jeff Higley
Editorial Director


Patrick Mayock
News Editor-International


Jan Freitag
Senior VP, Global Development, STR


Shawn A. Turner
Finance Editor


Jason Q. Freed
News Editor-Americas



Samantha Worgull
Editorial Assistant


David Grossniklaus
STR Global Writer & Analyst


The Lobby a social network from HotelNewsNow.com
Wednesday, 06 April 2011



I was robbed—many of you were, too
Posted by Patrick Mayock at 12:00 AM

Show of hands: How many of you were robbed during the past week?

I was—and I bet most of you were, too. The stolen item in question? Personal data.

Sometime last week, hackers wormed their way into the supposedly secure servers at Epsilon, a marketing company in Texas that stores the names and email addresses of more than 250 million consumers for companies around the globe—companies like Hilton Worldwide and Marriott International and Red Roof Inn and Ritz-Carlton and Best Buy and Target and Walgreens and U.S. Bank and Brookstone and L.L. Bean and … phew! (The list keeps going.)

Fortunately, no financial information was breached, and the victims—that’s you and me, dear reader—likely will only suffer some unwanted spam.

We here at HotelNewsNow.com have covered data security in the past, and I encourage you to view our special report, “Data security 101” for a refresher.

This particular instance, however, is noteworthy for three reasons:

1) The sheer breadth of the breach. We’re in an increasingly digitized, interconnected world, folks. A security gap in Texas can now affect people anywhere from Cleveland (that’s me) to Copenhagen. It’s both fascinating and frightening at the same time.

2) How commonplace this type of occurrence has become. When I received an email yesterday morning from Hilton HHonors alerting me to the possible breach of my account, I didn’t spit out my Kashi GoLean Crunch in a state of abject horror. I simply skimmed through the message, shrugged my shoulders and went on with my day. Or as a fellow editor put it during our daily news meeting: “This type of stuff just happens all the time.”

It amazes me we’re at a place where one of the biggest breaches doesn’t cause us to bat an eye. Maybe we’ve gotten so used to sending our credit cards numbers and birthdates and other personal info online that we expect a hack or two to chip away at our personal identities.

Now, don’t get me wrong. I’m not advocating against hotel companies working to prevent cyber attacks. They risk serious liability (in the form of millions and millions of dollar in lawsuits) for subpar security precautions online—not to mention the black eye on the company brand and reputation that could result.

Which brings me to my third point …

3) The proficiency of the company response. That HHonors email I mentioned earlier? I received it before I read or heard a single story about the breach from any news outlets.

Companies have gotten very good at responding in the face of these attacks. Hilton, for example, quickly acknowledged the problem, explained who and what data was at risk, and outlined the ramifications. It also suggested some precautionary tips for members and underscored its commitment to address the manner and strive for better data security in the future.

Mere lip service? The cynics among you might think so. But I’ll take a more optimistic viewpoint. Despite their shortcomings, companies like Hilton and Marriott deserve kudos for acting fast and keeping the lines of communication open. As public relations guru Rich Roberts said in his column last year, “Hotel brands must own up to security shortcomings, disclose plans for fixing their problems (without, of course, revealing information useful to the crooks), commit to data-security standards established by the PCI Security Standards Council and pledge prompt, public notification of any future breaches.”



Bookmark and Share


3 Comments
Show All

06 April 2011 at 2:13 PM EST
In response to: I was robbed—many of you were, too
13thScorpion commented:
I worked very hard to keep my email clean of spam. I was successfull for 5 years with my new address - now I might have to change it again. I am interested in participating in a class action against Epsilon. Anybody know anything about a law suit that is taking place?

06 April 2011 at 11:25 AM EST
In response to: I was robbed—many of you were, too
Lloyd commented:
Great article. I would only suggest that since this is in a hotel industry site that you note the responses of ALL 4 of the hotel firms you cited. My response from Red Roof actually came BEFORE the other responses of the 2 you mentioned. I don't know about Ritz. Thanks.

06 April 2011 at 10:55 AM EST
In response to: I was robbed—many of you were, too
Baddniss commented:
I received the same notices you did, from Hilton, Marriott (and its sister company Ritz Carlton) re my personal data breach. I wrote each of them back a note saying that if they really cared about me as a customer, they should each send me a couple of months worth of COMPLIMENTARY credit watch subscriptions, as a result of the trouble THEY have caused me. We'll see if I get any response to those requests...



Login
Or enter a name to post your comment:

Post Your Comment

(4000 charcters max)
Protected by FormShield
Refresh
Listen
Please enter the characters shown on the image


Enter the characters you see in the box above, then click submit to post your comment

HotelNewsNow.com encourages reader participation. The opinions expressed in comments do not necessarily reflect the opinions of HotelNewsNow.com or its parent company, Smith Travel Research and its affiliated companies. Please report any violations to our editorial staff.

Comments that include profanity, lewdness, personal attacks, solicitations or advertising, or other similarly inappropriate or offensive comments or material will be removed from the site. You are fully responsible for the content you post.