Latitude [owner of 28 Degree MC] suffers Cyber attack, personal info stolen

Hackers are starting to make our lives a lot more complicated. We had Medibank Private and now Latitude which is our 28 Degrees account…..
 
Probably needs to have ‘owners of 28 Degrees card’ in the title to attract more attention.

Both Mrs Scarlett and I have the 28deg; we’re waiting to see what Latitude tells us has been compromised. Fortunately (I think) we’ve both held the card for a number of years so ID details used during account opening would have changed.
 
I’ve been following this since yesterday morning when news broke. It’s still entirely unclear what if any 28° customer info is affected. Most of the coverage is talking about BNPL stuff. So hoping I’m not caught up again (Optus, Medibank (TI))…

Fortunately I’ve renewed my licence since opening 28°…
 
Email just arrived from Latitude:

We’re writing to you directly to update you on a recent cyber-attack that Latitude Financial is actively responding to. Regrettably, the attack has resulted in the theft of some customer data.

The attacker appears to have stolen personal information that was held by two Latitude service providers, impacting customers across both Australia and New Zealand.

As of today, we understand that approximately 103,000 identification documents, more than 97% of which are copies of drivers’ licenses, were stolen from one service provider. Approximately 225,000 customer records were stolen from a second service provider.

Latitude apologises to its customers, particularly those who were impacted. Please be assured we will contact you directly if your personal information has been disclosed.

We are working with the relevant authorities and have engaged cyber security specialists as we continue to do everything in our power to contain the attack.

As a valued Latitude customer, we thank you for your understanding and patience. Our services remain available and you should have confidence in using them.

Please continue to monitor Latitude’s website where we will be publishing further information as it becomes available.

Andrew Walduck
Chief Operating Officer
 
Last edited:
I cannot have to get another DL again surely. I just signed up a couple of months ago for OS trip next month using the new one!
 
I cannot have to get another DL again surely. I just signed up a couple of months ago for OS trip next month using the new one!
Unless you have given Latitude your new license, it would seem unnecessary,
 
Email just arrived from Latitude:

We’re writing to you directly to update you on a recent cyber-attack that Latitude Financial is actively responding to. Regrettably, the attack has resulted in the theft of some customer data.

The attacker appears to have stolen personal information that was held by two Latitude service providers, impacting customers across both Australia and New Zealand.

As of today, we understand that approximately 103,000 identification documents, more than 97% of which are copies of drivers’ licenses, were stolen from one service provider. Approximately 225,000 customer records were stolen from a second service provider.

Latitude apologises to its customers, particularly those who were impacted. Please be assured we will contact you directly if your personal information has been disclosed.

We are working with the relevant authorities and have engaged cyber security specialists as we continue to do everything in our power to contain the attack.

As a valued Latitude customer, we thank you for your understanding and patience. Our services remain available and you should have confidence in using them.

Please continue to monitor Latitude’s website where we will be publishing further information as it becomes available.

Andrew Walduck
Chief Operating Officer
Nothing here so far. Fingers crossed!
 
I guess everyone is locking their cards, just as a precaution? Just click the slider. As with the other hacks, I suspect the extent of the data breach will probably take some time to discover/announce.
 
I received general email just now. Checked the date I was approved for this card and realised I would have used the DL identity last year and before the Optus scam so only old DL would have been used. Phew. Card holding up. The old 28 degree card was excellent at picking up scams so fingers crossed.
 
I received general email just now. Checked the date I was approved for this card and realised I would have used the DL identity last year and before the Optus scam so only old DL would have been used. Phew. Card holding up. The old 28 degree card was excellent at picking up scams so fingers crossed.
Still nothing. But I did get my monthly Equifax report (thanks Optus) with my near perfect credit score…
 
Email just arrived from Latitude:
Same, at 5:30pm. How long have they known about this, and yet they choose to notify their customers at the convenient time of 5pm+ on a Friday? This is the same behaviour that the honourable Australian banks have repeatedly displayed advising their customers of mortgage rate increases on Friday Afternoons. Any chance they were hoping no one would notice or care at this hour?

Welcome to big business/Qantas Marketing 101.
 
Probably needs to have ‘owners of 28 Degrees card’ in the title to attract more attention.

Both Mrs Scarlett and I have the 28deg; we’re waiting to see what Latitude tells us has been compromised. Fortunately (I think) we’ve both held the card for a number of years so ID details used during account opening would have changed.

I’m hoping this too… my card must be at least 10+ years old, so original ID now expired.

But I don’t get why Latitude is being so coy about the services affected? If it’s not credit cards, can’t they just come out and say that??
 
Last edited:
Same, at 5:30pm. How long have they known about this, and yet they choose to notify their customers at the convenient time of 5pm+ on a Friday? This is the same behaviour that the honourable Australian banks have repeatedly displayed advising their customers of mortgage rate increases on Friday Afternoons. Any chance they were hoping no one would notice or care at this hour?

Welcome to big business/Qantas Marketing 101.
General email just arrived timestamped 23:11….

So far still no suggestion that CC details, login details, passwords etc compromised.
Post automatically merged:

my card must be at least 10+ years old, so original ID not expired.
Not expired???? How?
 
General email 5.17pm SYD time.
Have had the 28deg card so long I dont think I even had a DL back then (not quite, but anyway...)
 
So far still no suggestion that CC details, login details, passwords etc compromised.
Why would a big corporate divulge more information than they need to? I guarantee you that we’ll get all those frightening details in the coming days and weeks in a pathetic attempt to reduce the severity of this security breach by slowly drip feeding us the issue.

Not having a go at you @SYD, just totally sick of the BS that corporates and their PR/Marketing teams pull out of their cough In an apparent attempt to appease their “Customers” while prioritising their Shareholders and the Executives/Directors’ pockets. Capitalism, or just typical corporate greed and injustice?
 
Why would a big corporate divulge more information than they need to? I guarantee you that we’ll get all those frightening details in the coming days and weeks in a pathetic attempt to reduce the severity of this security breach by slowly drip feeding us the issue.

Not having a go at you @SYD, just totally sick of the BS that corporates and their PR/Marketing teams pull out of their cough In an apparent attempt to appease their “Customers” while prioritising their Shareholders and the Executives/Directors’ pockets. Capitalism, or just typical corporate greed and injustice?
Yes, Latitude may not be up there with established corporate entities but at least the others were at pains to point out early on that account details hadn’t been compromised.

Suicide for them not to follow suit.
 
Back
Top