Woolies forced to shut online store

High street veteran Woolworths has been forced to temporarily close its online store after customer credit card and personal details were exposed on its website.

Ian Lynch

High street veteran Woolworths has been forced to temporarily close its online store after customer credit card and personal details were exposed on its website.

Two Woolworths customers will receive cash compensation from the high street retailer after their names, addresses, and phone and credit card details were published on the www.woolies.co.uk website.

Advertisement

Woolworths says that an unidentified glitch in the website caused the customers' personal details, along with a description of the last product they had bought online, to be published on a web page within its site. A third customer then accessed this page and raised the alarm.

A Woolworths spokesman told vnunet.com that the company has apologised profusely to those involved and has agreed a one-off payment to the two customers for the inconvenience involved in cancelling their credit cards. He said one of the customers had asked for the compensation sum not to be revealed and thus he could not supply further details.

According to the spokesman, the website was closed down as soon as Woolworths became aware of the breach and the retailer is now conducting a thorough investigation into the reasons for the breach in customer confidentiality.

He added that he does not expect this to be completed until 18 August and the website would remain offline until then.

High street bank Barclays recently suffered a breach following a system upgrade that allowed customers to view each other's bank account details online.

Woolworths confirmed that it had also recently upgraded its system but denied that this was at fault, saying such upgrades were ongoing and the cause of the problem had not yet been identified.

Woolworths is the third case of a major UK company letting down its customers over the storing of confidential information on websites.

In July, thousands of PowerGen customers had their credit card details exposed on the utility's website. Security experts said at the time that companies often failed to secure customer data, because of a variety of mistakes. These included web connections being left open at a firewall, poorly designed web applications and web servers not being patched.

Consumer groups said these breaches were weakening public confidence in ecommerce. Earlier this month, a report from the National Consumer Council, Ecommerce and Consumer Protection, found that unless problems with online security are addressed, the fear of fraud would continue to be a deterrent to online retail.

Despite the UK's support for dotcom enterprises, and the government's insistence that the UK would become the central hub in Europe for ecommerce, purchasing is still one of the least popular online activities, according to the report.

  • Have your say
  • Send to a friend
  • Print
  • Digg
  • Reddit
  • Share

Tags:

Do you agree?

Further reading

Still losing against an unseen enemy

This year has seen a succession of high-profile security breaches, and even the best-protected networks remain curiously vulnerable.

Woolworth's back online after scare

High street retail giant Woolworth's will finally relaunch its website this week, two months after it was closed down due to security problems. But uncertainty remains over whether the site will be able to deal with predicted volumes.

Net fraud goes unpunished and unreported

Nine out of 10 internet frauds in the UK still go unpunished and usually unreported, despite the recent attempts by credit card companies to crack down on online fraud.

Weak security found in many web servers

One in three supposedly secure ebusiness servers are using software with known security weaknesses, and European sites are the worst offenders, according to a survey.

Related whitepapers

Related jobs

Most watched

Xperia X1

Video Review: Sony Ericsson Xperia X1

First Looks Editor Ian Williams gets hands on with the Sony Ericsson Xperia X1

iPhone

Video Review: iPhone 3GS

We put Apple's latest iPhone through its paces

IT white papers

Search white papers

Top categories

Poll

Poll: Summer smartphones

Poll: Summer smartphones

Which smartphone will you be taking to the beach this summer?

View poll results

Advertisement

Advertisement

Newsletter signup

Sign up for our range of FREE newsletters:

Existing User

Newsletter user login:

Enter email address to edit your newsletter preferences

Job of the week

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Hiring now on ComputingCareers:

Related IT jobs

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Spotlight

a padlock

Microsoft to plug security holes

Microsoft has given advance warning of a number of security...

Nokia handset

Top 10 articles, 10 July 09

No Nokia Android phone, ActiveX attacks and Google enters into...

Can Google beat Microsoft at its own game?

Google's announcement this week that it plans to step into...

iPhone

Video Review: iPhone 3GS

We put Apple's latest iPhone through its paces

Primary Navigation