Has anyone else received this?
OANDA is writing to inform you of an incident affecting our client database that occurred between July 14 and 17, 2012. Specifically, on the evening of July 17, 2012, OANDA discovered that one of our employee usernames and passwords was hacked and used in an unauthorized manner that allowed an intruder to view the personal information of a limited number of accountholders in our customer database. Based on our investigation, we believe that this incident may have affected the security of some of the information associated with your OANDA fxTrade account. This information may include (if you provided such information to OANDA) your name, telephone number, address, e-mail address, date of birth, citizenship, employment information, net worth, account numbers and balance, social security number/tax identification number, passport or drivers license number, and financial account information, including the bank account number used to fund your fxTrade account and security question and answer associated with your fxTrade account. Copies of documents sent to OANDA, such as address confirmation or identification documentation, were NOT accessed.
Upon learning of this incident, OANDA promptly disabled the affected username to prevent further unauthorized access to our database. OANDA has also taken additional measures to increase security of our client database and has hired an external firm to audit these changes. Additionally, OANDA has notified the authorities of this incident and will assist with their investigation.
We are aware that this breach creates a risk of identity theft and we are providing you with prompt notification so you can take steps to protect your personal information. This letter provides information regarding the incident as well as steps you may take to protect yourself from identity theft or fraud.
We have investigated and have found no evidence to suggest there was unauthorized activity in your fxTrade account, however, we encourage you to carefully review your recent fxTrade transaction history and to immediately notify us if you notice any unusual activity. Our investigation to date shows that no client funds were misappropriated during this incident. For your security, we encourage you to change the password to your fxTrade account and contact our customer service team to change your security question. Our customer service team will be reaching out to you by telephone to guide you through the appropriate next steps and to answer your questions. You can also reach us by calling +44-20-3151-2050 or emailing <[email protected]>.
Next Steps
We advise you to contact the source(s) you used to fund your fxTrade account (e.g. banks, PayPal, credit card companies) to advise them of the potential breach. Your bank can assist you in taking measures to prevent unauthorized access to your bank accounts. Additionally, we encourage you to place a “fraud alert” on your personal credit file with your local credit reporting agency and order a credit report and review it for any suspicious activity, such as accounts you did not open or inquiries from creditors that you did not initiate. Carefully review the report to ensure the information, such as your address and employment information is correct. Many credit reporting agencies provide a free credit report every year, however, if there is a cost associated with ordering the credit report, please notify OANDA and we will assist with a credit to cover the cost of the credit report. Please contact OANDA if you request assistance with setting up credit monitoring services with your local credit reporting agency. If you suspect someone is using your personal information, please contact your local law enforcement immediately to report the identity theft. Even if you do not find any signs of fraud on your credit report, we recommend that you check your credit reports periodically.
OANDA takes the protection of personal information very seriously, and we regret that this incident occurred. OANDA will continue to diligently investigate this incident and take measures to protect your information. OANDA is committed to ensuring that you are aware of the resources that are available to you to reduce the risk of misuse of your personal information, and we will work with you to help minimize any inconvenience you may experience as a result of this incident.
Sincerely,
Covey Hunter
Head of Global Customer Service
Note: This refers to OANDA in the UK.
(Mods: Wasn’t sure which forum area to post this in.)