One Tech Tip: What to do if your personal info has been exposed in a data breach

Advertisement

Advertise with us

LONDON (AP) — Data breaches like the most recent one involving AT&T customers are becoming an almost regular occurrence.

Read this article for free:


or

Already have an account? Log in here »

To continue reading, please subscribe:

Subscribe and receive a limited-edition Free Press branded hat or tote.

Digital Subscription

One year of digital access for only $205*

  • Enjoy unlimited reading on winnipegfreepress.com
  • Read the E-Edition, our digital replica newspaper
  • Access News Break, our award-winning app
  • Play interactive puzzles

*First annual payment billed as $205.00 + GST for one year. This annual subscription will automatically renew at $233.00 + GST every 52 weeks (10% off the regular annual price of $259.35). Offer available to new and qualified returning subscribers only. Cancel any time.

To continue reading, please subscribe:

Add Free Press access to your Brandon Sun subscription for only an additional

$1 for the first 4 weeks*

  • Enjoy unlimited reading on winnipegfreepress.com
  • Read the E-Edition, our digital replica newspaper
  • Access News Break, our award-winning app
  • Play interactive puzzles
Start now

*Your next Brandon Sun subscription payment will increase by $1.00 and you will be charged $17.95 plus GST for four weeks. After four weeks, your payment will increase to $24.95 plus GST every four weeks.

Hey there, time traveller!
This article was published 12/07/2024 (820 days ago), so information in it may no longer be current.

LONDON (AP) — Data breaches like the most recent one involving AT&T customers are becoming an almost regular occurrence.

As more of our lives move online, our personal data like email addresses, phone numbers, birthdates and even passcodes are becoming ever more vulnerable to theft or being mistakenly exposed.

In malicious breaches, cybercriminals can use stolen data to target people with phishing messages, or by taking out loans or credit cards in their name, a common and harmful type of identity theft.

Here are some tips to protect yourself.

Be aware

In the United States, there’s no federal law compelling companies or organizations to notify individuals of data breaches, but it’s standard practice for them to inform affected customers and often provide identity protection services, said Oren Arar, vice president of consumer privacy at cybersecurity company Malwarebytes.

The situation is better in the European Union, where the 27-nation bloc’s privacy regulations require disclosure of certain types of breaches.

Even after a breach has been made public, cybersecurity experts say people need to remain vigilant. Be on guard for phishing and other social engineering attempts, in the form of emails or phone calls purporting to be from the hacked organization or someone offering help. Contact the company or organization involved to see if they can confirm it. But use their official website, smartphone app or social media channels – don’t use links or contact details in any messages you’ve been sent.

Also consult the Federal Trade Commission’s website for identity theft victims, identitytheft.gov, which provides step-by-step advice on how to recover from various scenarios.

Change your password

If your data has been exposed, the first thing you should do is change your password for the account involved.

Use a strong password including letters, numbers and symbols. The longer the better – some experts say it should be 16 characters. Make sure to add multifactor authentication, which adds a second layer of verification by requiring a code sent by text message or email, or inserting a USB authenticator key into your device.

And if you’ve been using the same or similar login information for multiple websites or online accounts, make sure to change it. The reason is that if hackers pilfer your password from one service, they can try it on your other accounts and easily get into all of them. If you find it too hard to memorize all your various credentials, consider a password manager.

“Just because your info shows up in a breach doesn’t mean someone’s stolen your identity or money. But it does mean you’re at risk,” said Arar. “That’s why it’s smart to watch your credit for new accounts, change any passwords that get leaked, use multifactor authentication, and have a separate ‘junk’ email for less important sign-ups.”

Keep monitoring

Data breaches are rampant and it can be hard to keep track of them through individual notifications. There are online services that you can check, like Have I Been Pwned, a free website that shows if your email has been involved in a data breach.

Malwarebytes’ Digital Footprint Portal does a similar job but it can also check whether your info has been posted on the dark web.

“When public data breaches occur, cybercriminals gather as much data as possible so they can sell it on the dark web,” said Darren Guccione, CEO of Keeper Security, which makes password protection software and offers a tool, BreachWatch, that scans the dark web to see if your personal information shows up there.

Tell your bank and credit agencies

If card payment numbers were stolen, inform your bank or credit card company, explaining that your card is at risk of fraud and asking them to alert you of any suspicious activity. They’ll probably issue a new card right away. Some banking and credit card apps allow you to lock the account and freeze any transactions from the app.

You can also notify credit agencies – the three main ones are Equifax, Experian and TransUnion. They can freeze your credit, which restricts access to your credit report and makes it hard to open new accounts or issue a fraud alert, which will be a warning added to your credit report encouraging lenders to contact you before lending money.

Take extra care after telco hacks

Cybersecurity experts have warned that breaches that involve a telephone company, like the AT&T case, leave customers vulnerable to having their phone numbers stolen, or SIM swapped. Thieves could then use the hijacked number to access other accounts that use that number for multi-factor authentication through text messages.

To reduce that risk, AT&T advises also setting up a unique passcode that’s needed to prevent significant account changes such as porting phone numbers to another carrier. Also, delete phone bills, bank statements and other messages with personal info from your email account, so that if criminals gain access to your inbox, they won’t be able to use that information to pass security checks.

___

Is there a tech challenge you need help figuring out? Write to us at onetechtip@ap.org with your questions.

Report Error Submit a Tip

More Stories

Orphaned polar bear cub has new home at Winnipeg zoo

Eva Wasney 16 minute read Preview

Orphaned polar bear cub has new home at Winnipeg zoo

Eva Wasney 16 minute read Updated: 4:06 PM CDT

It’s a grey September afternoon and a small group is gathered for a special behind-the-scenes visit with Assiniboine Park Zoo’s newest resident.

“Heeeeere, bubba,” animal-care specialist Caitlin Gordon-Hall hollers from between a double layer of chain-link fencing.

After a beat, a small white face appears at the entrance of the private enclosure. The polar bear cub sniffs the air before trundling toward the fence, where his keepers have been working to encourage calm behaviour around humans ahead of his public debut on Thursday.

Gordon-Hall offers sing-song affirmations while the cub, who is nearly 200 pounds and 10 or 11 months old, observes the fawning strangers with guarded curiosity.

Read
Updated: 4:06 PM CDT

Dog feces vandalism shuts down food pantry

Kelly-Anne Riess 4 minute read Preview

Dog feces vandalism shuts down food pantry

Kelly-Anne Riess 4 minute read Yesterday at 6:54 PM CDT

A few shelves set up beneath a West End community notice board were meant to offer a place where neighbours could leave food for anyone who needed it.

Read
Yesterday at 6:54 PM CDT

See silver lining to your impossible crush

Maureen Scurfield 4 minute read Yesterday at 2:01 AM CDT

DEAR MISS LONELYHEARTS: I’m in love with my sister’s boyfriend, and neither one of them knows it. They’re both grad students and came back home from the province where they are studying to write and spend the summer in Manitoba.

Thankfully, they’ve gone back home because it was becoming too much for me to bear. My sister’s guy is perfect for me, but she already owns him and I’m too young to fight her for him.

Still, the two of them don’t realize the depth of my feelings. I don’t know how to behave when they get cosy around me and I feel so jealous I want to scream. I’m not sure what to do next.

This week I got an email from my artsy-fartsy sister with an invitation to come visit them in December and go to some fun plays and parties with them and their friends. They even promised my Christmas present from them will be my plane ticket.

Police on scene at Fairmont hotel construction site

1 minute read Updated: 12:19 AM CDT

At least three police cars were present at the under-construction Fairmont Winnipeg Thursday evening.

The nature of the response was unclear, but officers were guiding traffic outside of the construction zone at 2 Lombard Place while the response was underway. At 6:50 p.m., traffic was flowing normally.

Security on site provided no information on the response, but an individual working behind site fencing told the Free Press there’d be no comment from anyone on site as to why police were on scene at this time.

An SUV with a Government of Manitoba logo on its side was also present alongside personnel from Manitoba Workplace Safety and Health. However, it’s unknown if it’s connected to the police response.

Powerful allegory, magic wonder as ballet takes on Stravinsky

Holly Harris 5 minute read Preview

Powerful allegory, magic wonder as ballet takes on Stravinsky

Holly Harris 5 minute read 6:50 PM CDT

The Royal Winnipeg Ballet opened its mainstage season with fire and ice Thursday, as it paid homage to Russian composer Igor Stravinsky with Stravinsky Stories.

Local balletomanes may remember Alexei Ratmansky as a principal dancer during the early 1990s. The internationally renowned dance artist returns in a full-circle moment to stage The Fairy’s Kiss, the 50-minute work his first collaboration with the RWB in more than 30 years. He began flexing his choreographic muscles in its downtown studios with an earlier, reimagined incarnation in 1994, based on Hans Christian Andersen’s fairy tale The Ice Maiden, in turn set to Stravinsky’s own tribute to Tchaikovsky’s lushly romantic ballet scores.

Its narrative follows the journey of a Young Man (newly minted principal dancer Skylar Campbell, with all leads alternating) saved — and kissed — by a Fairy (principal dancer Elizabeth Lamont, who rips off a dizzying set of “fouettes”) after his Mother (former principal dancer Vanessa Léonard adding her own gravitas) perishes in a blizzard.

After falling in love with his fiancée (principal dancer Alanna McAdie, infusing her character with innocent youthfulness grounded by intricate footwork), he is tricked on his wedding day by the now disguised Fairy who reveals her true identity — and his ultimate destiny.

Read
6:50 PM CDT

Sex offender who changed name sent back to prison

Dean Pritchard 7 minute read Preview

Sex offender who changed name sent back to prison

Dean Pritchard 7 minute read Wednesday, Oct. 7, 2026

The father of a boy repeatedly abused by convicted sex predator Ryan Knight said he believes his son would have been kept safe had there been a law in place preventing sex offenders from legally changing their name.

Read
Wednesday, Oct. 7, 2026