blog header image

Posted : 07 Aug 2019 at 11:44:56
Category: News

Share this article

Digital bank says ‘bug’ meant unauthorised staff had access to numbers for six months

Monzo Bank’s app icon. The digital bank says it has now corrected a bug that could have exposed the pins of some of its customers to unauthorised staff. Photograph: Alamy

The digital bank Monzo has urged nearly 480,000 customers to change their pins after it left banking information exposed to unauthorised staff for six months.

The bank, which is now valued at £2bn, said it usually stored pin records in a “particularly secure” part of its internal system where it could tightly control which staff members could access them. But on Friday, the bank discoveredthat pins were also being copied on to log files, that while encrypted, could be accessed by about 110 unauthorised engineers.

The Guardian understands that pins were mis-stored for up to six months, and that the situation has since been reported to the Information Commissioner’s Office as a precaution.

Business Today: sign up for a morning shot of financial news

About one in five of the bank’s 2.6 million customers, or around 480,000 UK accounts, have been affected.

Monzo pushed ahead with an app upgrade early on Saturday morning after discovering the flaw, and worked throughout the weekend to delete the information it had incorrectly stored. That process was completed on Monday.

Monzo insisted that no one outside the bank had access to the pins and said it had no evidence suggesting the data was misused.

“We’ve checked all the accounts that have been affected by this bug thoroughly, and confirmed the information hasn’t been used to commit fraud,” Monzo said in a blogpost.

“Just in case, we’ve messaged everyone that’s been affected to let them know they should change their pin by going to a cash machine.”

The bank also sent emails to potentially affected customers on Monday, apologising for having mismanaged the sensitive data.

While the issue is said to have been resolved, it is one of the worst IT problems to hit the app-only bank since its launch in 2015.

Last week Monzo was affected by a temporary outage that meant some card purchases were failing to go through. Others were unable to login or receive bank transfers.

The brand, known for its hot coral pink cards, is particularly popular among millennials in the south-east but is quickly spreading across the UK. With plans to expand to the US its chief executive, Tom Blomfield, expects the bank to grow to 3 million customers in a matter of months.

Blomfield’s growth plans have been fuelled by a fresh round of funding announced in June, which helped Monzo double in value to £2bn.

Original Source - The Guardian

SIMILAR NEWS

blog header image
NEWS
LANDLORDS NEED TO BE PREPARED FOR EVERY POSSIBILITY WITH CGT CHANGES – YOUNG

The age-old question posed by all private sector landlords at any one time is often, ‘what do I do next?’ For most, the answer is staring them in the face, and that continues to hold ...

blog header image
NEWS
TIGHTER SELF-EMPLOYED AND AFFORDABILITY RULES HERE ‘FOR SOME TIME’ – HSBC

Tighter self-employed and affordability rules here ‘for some time’ – HSBC Tightened self-employed lending criteria and affordability rules are seen across the mortgage market since ...

blog header image
NEWS
SNITCHES GET RICHES: HMRC PAYMENTS TO TAX EVASION WHISTLEBLOWERS UP 63% IN 2019/20

HMRC reported a 63% increase in payments to whistleblowers for reporting tax evasion in the 2019/2020 tax year, paying £473,000 to informants during the period.  In the previous tax year HM ...

blog header image
NEWS
LEE MARLEY OPENS LEEDS OFFICE

Lee Marley Brickwork Ltd has appointed Mike Hampton as commercial director to head up its new regional office in Leeds. Leeds becomes the fourth regional operation of Lee Marley Brickwork (LMB), join ...

blog header image
NEWS
SELF-EMPLOYED TREATED AS ‘SECOND-CLASS’ BY SOME LENDERS, BROKERS SAY

Self-employed workers are being treated like ‘second-class citizens’ by some mortgage lenders, as two-tier systems and punitive criteria leave these applicants severely disadvantaged, brok ...

blog header image
NEWS
RECRUITING PEOPLE FROM OUTSIDE THE UK FROM 1 JANUARY 2021

From 1 January 2021, freedom of movement between the UK and EU will end and the UK will introduce an immigration system that will treat all applicants equally, regardless of where they come from. Anyo ...

business-directory Business Directory
smartbusinessdirectory Payroll Services Business Directory
truebusinessdirectory payroll-services Directory
payroll-services Directory