Mortgage giant Mr. Cooper hit with cyberattack possibly affecting more than 14 million customers (abcnews.go.com)
from ZeroCool@feddit.ch to technology@lemmy.world on 18 Dec 2023 21:19
https://feddit.ch/post/3035989

#technology

threaded - newest

silverbax@lemmy.world on 18 Dec 2023 21:45 next collapse

Not only is this breach incredibly bad - exposing SSN, DOB, bank account numbers, address - the company slow walked reporting what was happening in real time.

The hackers were openly posting about the incompetence of Mr. Cooper’s IT team, so security firms and journalists knew that Mr. Cooper was compromised even though the company stated it was ‘just an outage’ then they claimed it impacted 4 million users, when it turned out to over 14 million. Unreal.

EvilBit@lemmy.world on 19 Dec 2023 04:43 collapse

I only found out from seeing it here. No email, no app notification.

I go to the site and I’m told I get two years of credit monitoring, so at least I got that going for me. It says I need to get an activation code from my mortgage account.

Guess what’s nowhere to be found in my mortgage account? Yep.

This is some bullshit of the highest order.

JTskulk@lemmy.world on 19 Dec 2023 06:09 collapse

I got an email from them today.

BeardedBlaze@lemmy.world on 18 Dec 2023 22:09 next collapse

Did anyone that uses them receive an email from them about it? I sure as hell have not…

fodderoh@lemmy.world on 18 Dec 2023 22:15 next collapse

I did, about a month ago.

EDIT: Went back and looked at it. It was just a generic notification that an incident had occurred and that they were taking steps to address it. No details.

Kharmawasvaluable@lemmynsfw.com on 19 Dec 2023 02:13 collapse

Same. When I called to see how it would affect me I was told it was an outage, not a breach.

eguidarelli@lemmy.world on 18 Dec 2023 22:20 next collapse

Nothing here! My mortgage was bought by Mr. Cooper in September so I just made it into the system before this breach. This article is the first I am hearing that my SSN and Bank Account info was breached :(

ripcord@kbin.social on 18 Dec 2023 23:03 collapse

And here I was thinking that disclosure was required by law.

code@lemmy.zip on 19 Dec 2023 01:49 next collapse

not yet

ZetaLightning94@lemmy.world on 19 Dec 2023 02:33 next collapse

They emailed about an outage and delayed payments around that time

BeardedBlaze@lemmy.world on 19 Dec 2023 08:14 collapse

That’s all I got too.

MumboJumbo@lemmy.world on 19 Dec 2023 04:20 collapse

A Message to Mr. Cooper Customers

On October 31, 2023, our information security team identified an external threat to our network and locked down our systems while we resolved the issue. Over the following weeks, our investigation revealed that certain customer personal information had been compromised. We have been working closely with cyber security experts to determine the full extent of the impact.

We take our role as your mortgage company very seriously, and there is nothing more important to us than maintaining your trust. We truly appreciate your patience as we’ve worked through this situation.

Please take comfort knowing we are adding further security enhancements to help prevent incidents like this from happening in the future, and we are providing two years of free credit monitoring and identity protection services to any customer who would like to enroll. You will receive a letter in the mail soon with more information and next steps.

I am deeply sorry for any concern this incident may have caused. Making your homeownership journey as smooth as possible is our top priority, and we intend to make this right for you.

Sincerely,

Jay Bray

Chairman & Chief Executive Officer, Mr. Cooper Group

EvilBit@lemmy.world on 19 Dec 2023 04:44 collapse

That looks remarkably like an email I have not received.

RanchOnPancakes@lemmy.world on 18 Dec 2023 22:32 next collapse

Oh yeah, back in October. i was like “WTF? AGAIN?!”

Altomes@lemm.ee on 18 Dec 2023 22:36 next collapse

They should have to pay out damages for shit like this

AdamEatsAss@lemmy.world on 18 Dec 2023 23:42 collapse

I don’t think any loan holders would be affected. They would have to pay to repair their servers and other systems. There should probably be stricter regulations on digital security for important companies like this.

Nougat@kbin.social on 18 Dec 2023 22:36 next collapse

So good to know that anyone who wants to can buy our PII and leave it vulnerable to mischief.

CrimeDad@lemmy.crimedad.work on 18 Dec 2023 23:28 next collapse

I think companies like Mr. Cooper just manage the mortgages on behalf of Freddie Mac, so unfortunately the hackers can’t do everyone a solid and just delete them.

KairuByte@lemmy.dbzer0.com on 19 Dec 2023 08:30 collapse

Unless they are truly incompetent, there’s no way they could do that regardless. They’d need a no-backup solution, or at least no cold backups.

grayman@lemmy.world on 19 Dec 2023 23:48 collapse

I see you don’t work in tech at a large corporation. FYI, even if some of the engineers are good, 99% of management is so incompetent it’s flabbergasting.

The big dumb ass Corp, a fortune 100, that I work for had a jr admin… gave him admin on the vmware cluster. The dude deleted 70% of the VMs before anyone noticed. No backups. All hands on deck rebuilding critical systems for a week.

KairuByte@lemmy.dbzer0.com on 20 Dec 2023 00:51 collapse

I’ve worked for large corps before, all had backups, and whenever money was at risk there were cold backups as well.

Even the clients who were failing and going bankrupt kept backups, actually.

ivanafterall@kbin.social on 19 Dec 2023 03:34 collapse

Is Mr. Cooper still hangin'!?

spongebue@lemmy.world on 19 Dec 2023 14:49 next collapse

They just bought my mortgage from Wells Fargo after WF had it for a decade. I just made my first payment a couple weeks ago

phar@lemmy.world on 19 Dec 2023 18:25 collapse

Woosh

RunningInRVA@lemmy.world on 19 Dec 2023 18:45 collapse

No man. It was Hanging with Mr Cooper. Mr. Cooper has been in the dump for years and everybody still hanging with him is dragging too.

ivanafterall@kbin.social on 19 Dec 2023 18:57 collapse

I looked up the real Mr. Cooper and he's had some tough times, but he's still kickin'!

He appeared in the 2002 song "Oakland Raiders" by Oakland rap group Luniz. Delivering a humorous monologue as the song faded out, Curry asserted his status as a pimp and stated his fondness for big dank.

Warms the ol' heart cockles.

RunningInRVA@lemmy.world on 19 Dec 2023 18:59 collapse

Has Mr. Cooper had some tough times? I had no idea. It’s been a while since I hung out with him. I’ll reach out.

ivanafterall@kbin.social on 19 Dec 2023 19:05 collapse

On May 17, 2007, an Aerosol spray dispenser that had fallen behind a water heater exploded, and Curry, who was doing laundry at the time, was burned on more than 20% of his body, including his arm, back, and side. He spent many months recuperating at his home. According to an Associated Press interview posted on CNN.com on February 17, 2008, Curry went on The Montel Williams Show to discuss his recovery, and mentioned he considered suicide after waking from a three-day, medically induced coma, but decided against it with the help of friends and fellow comedians, such as Sinbad and Bill Cosby.