Woolworths apologises for e-gift card customer data breach

Groupon discounted e-gift card offer for BigW worth $1.3m ends in data breach after customer names and email addresses distributed via spreadsheet

Woolworths has apologised to customers following a gift card breach worth more than $1 million that saw nearly 8000 customer records containing names and email addresses leaked to other consumers.

The breach occurred after online discount site, Groupon, offered consumers a deal to buy BigW $100 and $200 gift vouchers at a 7.5 per cent discount last week. Nearly 8000 vouchers worth $1.3m were sold as part of the deal, according to a SMH report.

Customers who purchased the gift cards via Groupon were to be sent an email with a PDF attachment of their electronic voucher. However, according to the story posted on the SMH, when some customers opened the attachment, they found the spreadsheet containing the links to over $1 million worth of vouchers.

It is understood the attachment was emailed to more than 1000 other consumers, allowing them to not only access the gift card codes and begin shopping, but also see other consumers’ names and email addresses. The SMH quoted several customers who had paid for the vouchers via the Groupon site, and who said their gift cards had already been used in stores by other consumers.

In a statement to CMO today, Woolworths confirmed the vouchers had been cancelled and new ones issued to customers. The supermarket giant also reiterated its commitment to customer data security and apologised for the “technical fault”.

“Woolworths takes the concerns of its customers and data security seriously,” the statement read.

“On Saturday we were alerted to a technical fault with an e-gift card offered to customers. These e-gift cards have been cancelled and affected customers have been provided with new e-gift cards for use in-store.

“Woolworths apologises for the inconvenience this has caused our customers.”

A spokesperson for the Office of the Australian Information Commissioner said it is aware of the incident and has approached Woolworths for further information.

"We will assess the information provided by Woolworths to determine what further action may be required," it said in a statement to CMO.

"If people affected by this incident have any concerns about their personal information, they should contact Woolworths in the first instance. If they are not satisfied with any response they receive they can contact our enquiries line on 1300 363 992 to get more information about how the Privacy Act might apply and how they can make a complaint."

According to the Groupon website, more than 9100 electronic gift cards valued at $100 and $200 were purchased as part of the deal, with consumers purchasing up to 10 at a time. The vouchers were sold at a 7.5 per cent discount and could be used in Big W stores nationally.

Follow CMO on Twitter: @CMOAustralia, take part in the CMO Australia conversation on LinkedIn: CMO Australia, join us on Facebook: https://www.facebook.com/CMOAustralia, or check us out on Google+: google.com/+CmoAu

Join the newsletter!

Or
Error: Please check your email address.
Show Comments

Blog Posts

Social purpose: Oxygen for your brand health vitals

If trust is the new currency, then we’re in deep trouble. Here's why.

Carolyn Butler-Madden

Founder and CEO, Sunday Lunch

Customer experience disruption: Healthcare faces a bitter pill

Over the past decade, disruptors such as Amazon, Apple and Australia’s Atlassian have delivered technology enhanced customer experiences, which for the most part, have improved customers’ lives and delivered unparalleled growth. Can they do the same for healthcare?

Alex Allwood

Principal, All Work Together

How can a brand remain human in a digital world?

Some commentators estimate that by 2020, 85 per cent of buyer-seller interactions will happen online through social media and video*. That’s only two years away, and pertinent for any marketer.

James Kyd

Global head of brand strategy and marketing, Xero

https://bit.ly/2qLgzmR Transform your life a proven digital blueprint

Okitoi Steven

How this banking group tackled a digital marketing transformation

Read more

Its great to hear that companies including JCDecaux, oOh!media, Omnicom and Posterscope Australia have all partnered with Seedooh inorder...

Blue Mushroom Infozone Pvt Ltd

Out of home advertising companies strive for greater metrics and transparency

Read more

Much ado about nothingAnother fluff piece around what it could possibly do rather than what it is doing

gve

How AMP is using AI to create effortless ‘experiences’

Read more

is it true that Consumer expectations are also changing as a result. If we trust someone with our data there is also an expectation that ...

Sunita Madan

Society will decide where digital marketing takes us next: Oracle

Read more

This Blog is Very interesting to read and thank you for sharing the valuable information about Machine Learning. The information you prov...

johny blaze

What machine learning has done for the Virgin Velocity program

Read more

Latest Podcast

More podcasts

Sign in