Carnival Corporation & PLC hit by a data breach in Miami, FL, USA

Year

2021

Month

March

Reference number

20210301

Impact area

Shore

Incident location

Miami FL

Incident country

USA

Victim country

USA

Victim identity

Carnival Corp.

Victim Type

Shipping Company

Method

Phishing

Summary:

In March 2021, the Miami (Florida, USA) based Carnival Corp. experienced a data breach. The attackers used e-mail to get into the IT system of one cruise liner. There it gained access to personal information of staff and customers. On march 19th , the company detected the unauthorised access of a third party to limited proportions of the companies information systems. There appears to be evidence of a low likelihood of mis-usage of the stolen data being misused. This has been ransomware based attack that Carnival Corp. had to endure in a timespan of about two years.

Reference URL

https://hospitalitytech.com/carnival-discloses-fourth-data-breach-two-years#:~:text=Breach%20happened%20on%20March%2019,a%20cybersecurity%20firm%20to%20investigate.
https://www.bloomberg.com/news/articles/2021-06-17/carnival-discloses-breach-of-personal-data-on-guests-and-crew
https://www.documentcloud.org/documents/20949884-carnival-march-bc-data-breach-notice
https://www.dailymail.co.uk/news/article-9698123/Carnival-hit-hackers-accessed-personal-information-guests-employees-crew.html
https://www.cbsnews.com/news/carnival-cruise-data-breach-hackers/
https://www.reuters.com/business/cruise-operator-carnival-discloses-breach-crew-guests-personal-data-bloomberg-2021-06-17/