The following poorly written e-mail tells customers that theire-mail addresses have been hacked. However, the message is clumsyand fails to include essential information in revealing securitybreaches to customers.
Your Task. List at least seven weaknesses Revise this messageusing the suggestions you learned in this chapter about securitybreach messages.
To: Kara Khalial [[email protected]] From: Justin Small[[email protected]]
Subject: Customer Security Incident at Princeton Payment SystemsCc: Bcc:
Companies and individuals across the country are experiencingmore and more security breaches. This email is because of a recentunfortunate security breach at Princeton Payment Systems. However,as a customer of Princeton, your privacy was never at risk. Wepromise to guard your privacy around the clock. Hackers last weekwere able to exploit a new function that we were trying to use tomake the customer log-in process faster for you and our othercustomers.. You should be aware of scams that may result from youraddress being used in phishing scams. To learn more, go tohttp://www.fdic.gov/consumers/consumer/alerts/phishing.html. Toprovide even more information about this incident, the U.S. postalservice will bring you a letter. Taking your privacy veryseriously, e-mail addresses are heavily protected here atPrinceton. Within hours of the hacker break-in, the log-inmechanism was disabled and a new procedure was established. Theuser is now required to enter their e-mail address and theirpassword before they can log in successfully. E-mail addresses werethe only information the hackers got. Other information such asaccount information and other personal information were neverrisked. We appreciate you being a Princeton customer.Sincerely,