Monster.com
Monster.com has admitted to a second attack on its website

Second Monster hack affects millions

Site may never be safe, says chief exec

Written by Matt Chapman

Monster.com has admitted that the number of job seekers on its website who had their personal data stolen is greater than the 1.3 million originally reported.

Sal Iannuzzi, chief executive at the recruitment website, said that the company's investigations into the recent hack found a second attack that had gone undetected.

Iannuzzi admitted that Monster.com had no idea how much information had been taken in the second attack nor how often its database had been accessed.

"We are assuming that it is a large number," he told Reuters. "It could easily be in the millions."

Despite promising to invest $80m to $100m in traffic surveillance and security, Iannuzzi admitted that Monster.com may never be safe.

"I want to be clear and I want to be frank: there is no guaranteed fix," he said. "I wish I could say there will be absolutely no way that the Monster site can be compromised. I cannot ever make that promise, and no internet company can."

Monster.com said that the only data that was taken were names, addresses, phone numbers and email addresses.

However, follow-up attacks have already targeted Monster.com job seekers using social engineering techniques to try and gain financial details.

Emails have been sent out pretending to be from recruiters asking for bank account details to complete job applications.

False emails containing links to malicious software that could steal sensitive data have also been sent out.

Monster.com kept the original attack secret for five days before alerting users to the problem.

The company's database holds around 73 million CVs. Iannuzzi claimed that only a few hundred had cancelled their accounts, along with a "handful" of employers.

Tags:

Further reading

IT managers pass the security buck

European SMEs blame employees for security breaches   More...

Monster.com hid site hack for five days

1.3 million users affected   More...

Man arrested in suspected Wi-Fi theft

Perched on a wall with a laptop? It's elementary, my dear Watson ...   More...

Monster.com suffers job lot of data theft

Details stolen from hundreds of thousands of users   More...

Related articles

Phishers launch Monster attack on job seekers

Scam targets users of recruitment site   More...

Monster.com suffers job lot of data theft

Details stolen from hundreds of thousands of users   More...

Hackers 'seeding' legitimate websites

SQL injection attacks colonising big name sites   More...

Hackers hit US stockbroker TD Ameritrade

Spam investigation uncovers database breach   More...

Do you agree?

Advertisement

Job of the week

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Hiring now on ComputingCareers:

Related IT jobs

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Advertisement

Watch

25 Jul 2008

7.85 MBPodcast Special: Views from the Valley More...

24 Jul 2008

3.68 MBSpammer jailed, Esquire e-cover, and network passwords More...

23 Jul 2008

2.99 MBSmall time security, official 'spying' requests and a spammer jail break More...

Poll

EUROPEAN E-COMMERCE

EUROPEAN E-COMMERCE

Are you happy making an online purchase from another European country?

Previous poll results

Newsletter signup

Sign up for our range of FREE newsletters:

Existing User

Newsletter user login:

Enter email address to edit your newsletter preferences

Spotlight

Credit card transaction

Credit card fraud rampant in the UK

Attempted frauds go unreported and ignored, analysts claim   More...

Intel

Intel rolls out new embedded line-up

System-on-a-chip offerings promise footprint and power saving   More...

Advertisement

Network cables

Tech giants collaborate on wireless HD

Another attempt at cable-free transmission in the home   More...

iPhone fever fills AT&T coffers

US provider cashes in on Apple smartphone   More...

Advertisement