---
title: "Data Breach Ripples: Week of May 22"
description: Stay up to date on the latest news involving hot information security topics and the latest data breaches.
---

[![Rippleshot_logo-432x144](https://info.rippleshot.com/hs-fs/hubfs/Brand%20Logos/Rippleshot_logo-432x144.png?width=200&name=Rippleshot_logo-432x144.png)](https://rippleshot.com/)

- Solutions 
    - [Sonar for Card Processors](https://rippleshot.com/sonar-card-processors/)
    - [Sonar for Card Issuers](https://rippleshot.com/sonar/)
    - [Rules Assist for Card Issuers](https://rippleshot.com/rules-assist/)
- [About Us](https://rippleshot.com/about) 
    - [Careers](https://rippleshot.com/careers)
    - [Press](https://rippleshot.com/press/)
- [Blog](https://info.rippleshot.com/blog)
- [Contact Us](https://rippleshot.com/contact-us)
- [Knowledge Center](https://rippleshot.com/knowledge-center)

# Data Breach Ripples: Week of May 22

Posted by [Zach Walker](https://info.rippleshot.com/blog/author/zach-walker) on May 22, 2015 1:30:00 PM

![](https://info.rippleshot.com/hs-fs/hub/443914/file-1972982950.jpg)

Find me on:

[LinkedIn](http://www.linkedin.com/pub/zach-walker/b/247/273/)

- [Tweet](https://twitter.com/share)

![DBR-Email-Header-4215](https://info.rippleshot.com/hs-fs/hubfs/DBR-Email-Header-4215.jpg?width=719&name=DBR-Email-Header-4215.jpg)

 

In this week's Data Breach Ripples, 20 percent of security professionasl have seen their company hide a data breach, a mobile spy software company suffers a data breach, the Chicago Public Schools district exposed the personal information of 4,000 students, the St. Louis Federal Reserve suffers a DNS breach and for this week's Rippleshot content, we recap ISMG's Chicago Fraud Summit and how issuers, merchants and card networks view the upcoming EMV shift. 

**20% OF SECURITY PROFESSIONALS HAVE SEEN THEIR COMPANY COVER UP A DATA BREACH**

For many security professionals, the margin of error is so slim that cybercriminals only need to be right once to compromise an organization’s network systems. But when cybercriminals succeed, it forces security professionals into an unfamiliar position. In a recent survey conducted by AlienVault, [20% of security professionals](http://www.information-age.com/technology/security/123459507/20-security-professionals-have-seen-their-company-cover-breach) surveyed reported either witnessing or been a part of a data breach that was kept hidden or covered up.

Due to the rapid growth in the Information Security industry, AlienVault believes that security professionals are often forced into situations where they have to navigate between following the correct legal course of action and protecting their organization following a security incident.

**MOBILE SPY SOFTWARE MAKER HACKED, mSPY, DENIES CUSTOMER DATA LEAK**

Last [week](http://krebsonsecurity.com/2015/05/mobile-spy-software-maker-mspy-hacked-customer-data-leaked/), evidence indicating that a mobile spy software maker has suffered a data breach was presented to Brian Krebs of KrebsOnSecurity. The [personal information](http://krebsonsecurity.com/2015/05/mspy-denies-breach-even-as-customers-confirm-it/) of hundreds of thousands of mSpy’s customers had been posted on a web page, accessible only through Tor. When interviewed by [BBC News](http://www.bbc.com/news/technology-32800238), mSpy claims that while the company was the victim of a “predatory attack,” there is no indication that it’s systems had been compromised and data was stolen.

**CHICAGO PUBLIC SCHOOLS CONFIRM DATA EXPOSURE OF 4,000 STUDENTS**

On Tuesday, officials from the Chicago Public Schools confirmed that the personal data of [roughly 4,000 students](http://www.nbcchicago.com/news/local/cps-data-breach-304367421.html) was exposed to five potential software vendors.  According to the CPS, the five companies were submitting proposals to work with Chicago schools and inadvertently provided them with the students’ information. After the CPS became aware of the mistake on March 24 and reached out to the potential vendors, the sensitive was destroyed following data privacy and security protocols.

**ST. LOUIS FEDERAL RESERVE SUFFERS DNS BREACH**

The St. Louis Federal Reserve sent out a message on Monday to the financial institutions it interacts with, indicating that it had been [victim of an attack](http://www.scmagazine.com/federal-reserve-bank-of-st-louis-resets-passwords-following-dns-attack/article/415440/), targeting routing services at a domain name service (DNS) vendor used by the St. Louis Federal Reserve.  The St. Louis Fed will require individuals with user accounts to change their usernames and passwords to help prevent unauthorized access. At this time, the impact of the DNS breach is unknown, it appears that the St. Louis Fed’s website was unaffected by the breach and domain hijacking.

Be sure to check back for future updates on this story as more information becomes available.

**RIPPLESHOT CONTENT: HOW ISSUERS, MERCHANTS AND CARD NETWORKS VIEW THE EMV SHIFT**

The Rippleshot team had the pleasure of attending [ISMG’s Fraud Summit](https://info.rippleshot.com/blog/how-issuers-merchants-and-card-networks-view-the-emv-shift) here in Chicago earlier this week. Unsurprisingly, the topic on everyone’s minds and mentioned in almost every single panel was the [impending shift to EMV](https://info.rippleshot.com/blog/how-issuers-merchants-and-card-networks-view-the-emv-shift) in the coming months and how that will impact card security moving forward.

 **SHARING IS CARING. TO GET YOUR FRIENDS AND COWORKERS SUBSCRIBED, SEND THEM [HERE](https://info.rippleshot.com/data-breach-ripples-signup).**

 

[![New Call-to-action](https://no-cache.hubspot.com/cta/default/443914/9cffd962-d582-4558-9058-48e82db0b042.png)](https://cta-redirect.hubspot.com/cta/redirect/443914/9cffd962-d582-4558-9058-48e82db0b042)  

 Topics: [Data Breach Ripples](https://info.rippleshot.com/blog/topic/data-breach-ripples)

[![R_reversed](https://info.rippleshot.com/hs-fs/hubfs/R_reversed.png?width=109&name=R_reversed.png)](https://rippleshot.com)

© Copyright 2020 Rippleshot. All Rights Reserved.

[LinkedIn](https://www.linkedin.com/company/rippleshot/) [Twitter](https://twitter.com/Rippleshot)