Police called in over security breach at Bottle Domains [Updated 19th 2009]
Credit card details of an unknown number of ‘Bottle Domains’ customers may have been stolen in a recent ‘security incident’.
The Melbourne based registrar, which is part of the Australian Style group, is blaming an un-named individual employee at
a competing Australian .au Registrar.
Details of the breach first came to light on Tuesday (10th Feb) when Australian domain name industry regulator - au Domain Administration Ltd. - issued a statement saying the Australian Federal Police (AFP)
are investigating the matter.
auDA said it had been contacted by the AFP and told there had been a security breach at Bottle Domains.
auDA is working with Bottle Domains to manage any security risks arising from the incident, and has today sent email notification to customers of Bottle Domains.
The email told Bottle Domain customers “it is possible that your account information has been accessed by third parties.”
All Bottle Domain customers are being asked to update their registry and account passwords and auDA has also warned them to watch their credit card accounts.
“During this time, we recommend that you remain vigilant and carefully monitor your domains, your account and your credit card transactions.
If you have any questions or concerns about the security of your account, please contact Bottle Domains at help@bottledomains.com.au or 1300 88 74 74.”
A follow-up statement issued on the 11th February by Andrew Stevens, general manager of Bottle Domains, and published on its web-site,
blamed the breach on “an employee of a competing Australian .au Registrar.”
Stevens said that Bottle Domains had a software licensing agreement with the other Registrar.
“[That] resulted in the individual having access to confidential system configuration which was eventually used to execute a breach.”
The announcement also said that a Perth man had been arrested in connection with the incident.
Subsequently, following a request from eCommerce Report, an official AFP spokeswoman confirmed the arrest.
"The AFP can confirm a 22 year old Perth man was arrested and charged with Dishonestly obtain or deal in personal financial information under Section 480.4 of the Criminal Code Act (Clth) 1995.
The man appeared in Perth Magistrates Court on Tuesday 10 February and was bailed to reappear in court at a date to be advised.
The AFP is working in cooperation with industry stakeholders and the financial sector to investigate this matter.
As this is an ongoing matter it would be inappropriate to provide any further comment. "
Melbourne based Australian Style was founded by Internet entrepreneur, Nicholas Bolton.
Bolton has recently been the focus of considerable mainstream business media attention because of all ill-judged foray into share-buying.
He bought a significant number of partly-paid shares in the BrisConnections toll road company but is now clearly unready to pay the remaining
monies owing on the full purchase price of the shares.
The Australian Style Group trades under a number of names including Bottle Domains, Bottle, Domain Central and Domain Explorer.
Stevens said that none of the other Australian Style group businesses had been affected by the breach.
The Australian Style Group of Registrars consists of Bottle Domains, Bottle, Domain Central & Explorer. Bottle, Domain Central & Explorer have all confirmed that they are not impacted by this event.
For more information go to
www.auda.org.au
www.bottledomains.com.au
www.domaincentral.com.au
www.explorer.net.au
|