zlacker

[return to "Checkout.com hacked, refuses ransom payment, donates to security labs"]
1. saberi+nd[view] [source] 2025-11-13 11:13:35
>>Strang+(OP)
So, I used to work in the fintech world and it looks to me like what was hacked was merchant KYB documents. I.e. when a merchant signs up for a PSP they have to provide various documentation about the business so the PSP can underwrite the risk of taking on this business. I.e. some PSPs won't deal with porn companies or travel companies or companies from certain regions etc.

This sort of data is generally treated very differently to the actual PANs and payment information (which are highly encrypted using HSMs).

So it's obviously shitty to get hacked, but if it was just KYB (or KYC) type information, it's not harming any individuals. A lot of KYB information is public (depending on country).

Fair play on them for being open about this.

◧◩
2. global+Ee[view] [source] 2025-11-13 11:23:19
>>saberi+nd
It's not just business data though - usually it will include ultimate beneficial owner and directors' passports, tax ID, etc. So there is a risk of identity theft there of potentially some very wealthy individuals.
[go to top]