PayPal has confirmed that nearly 35,000 users may have been affected following a data breach between December 6 and December 8, 2022. The suspected ‘credential stuffing’ attack may have meant that details like users’ names, addresses, Social Security numbers, tax ID numbers, and/or dates of birth may have been viewed but there is no current evidence that the data has been misused.
PayPal has now informed people by email and reset the passwords for the affected users, added enhanced security controls, and given affected users one year free identity monitoring services through Equifax.
“They are a very detail orientated team who have achieved great IT solutions for our company. Their knowledge of new technology is good and explanation of benefits for us easy to understand.”
- Lynn West -