Crime

In the Wake of the Cyberattack on Stuller, 5 Tips on Cybersecurity

CrimeDec 09, 2020

In the Wake of the Cyberattack on Stuller, 5 Tips on Cybersecurity

From password security to tracking-number safety, here are five cybersecurity tips to keep in mind.

20201209_Laptop.jpg
The Jewelers’ Security Alliance shared tips on how to safely connect with customers online.

New York—Stuller was hit by a cyberattack over Thanksgiving weekend that delayed shipments, shut down the phone lines, and created other operational issues amid the holiday rush.

It took a few days for the massive manufacturer and supplier to get same-day shipping services on in-stock items and the phone lines back up and running.

While Stuller said there was no indication that sensitive business information was compromised—noting that customer credit cards on file are tokenized, encrypted, and not housed at Stuller—the stressful disruption came at the most critical time of the year for the supplier, underscoring the need for businesses today to invest in cybersecurity.

Stuller did not provide additional details on the specifics of the cyberattack.

In a COVID-19 world, and even before then, the ability to connect with customers online is crucial, whether one is running a consumer-facing retail store or a business-to-business operation.

Here are five expert tips on how to navigate the online world safely.

Ensure employees are adequately protected as they work from home.

Law enforcement officials have seen an uptick in fraud and hacking now that more people are working from home on computers or smartphones less secure than those in their office, the Jewelers’ Security Alliance said in a recent memo.

Be sure all employees’ devices have updated protections in place, including firewall, malware, and spam protection.

Stop using the same password for everything.

JSA advises having “strong, unique” passwords.

When the password for everything is the same, it may be easy to remember, but it’s also easy for hackers to gain access to several accounts in one swoop.

Users may also want to set up two-factor or multi-factor authentication.

“If a cybercriminal were to gain access to your log-in credentials, they wouldn’t be able to compromise your account if they didn’t have access to a passcode that would be sent to your phone,” explained Ryan Ruddock, senior research assistant at JSA, during an October webinar on online scams.

If you’re unsure about an email, just don’t open it.

Be wary of email phishing scams, which are attempts to trick users into giving criminals access to personal information.

“The intention behind phishing is to acquire personally identifiable information. So that’s going to include credit card information, social security numbers, account log-in credentials, and, in some cases, intellectual property,” said Ruddock.

It’s the most common type of cybercrime, said Ruddock, noting that it doesn’t target specific individuals.

Criminals will send a mass email in the

hopes that some percentage will respond.

Misspellings and poor grammar are red flags to look for in phishing emails, he said, but also be wary of any email sent with a sense of urgency, pressuring users to act now, think later.

If an email doesn’t look trustworthy, don’t open it or click on any links. Delete it.

If a link in what is believed to be a phishing email is clicked, Ruddock recommended disconnecting from the WiFi, which could prevent malware from being installed on your computer, running an anti-virus scan, and changing passwords.

Also, be on the lookout for email spoofing, which involves an email sent from an address that’s almost, but not quite, identical to a genuine email address for a contact.

An email might look like it’s coming from longtime vendor, such as JohnSmith@jewelry.com, but upon closer inspection, it may actually read JohnSmith@jewellry.com.

If anything about the email seems off, it’s best to contact the vendor or customer by phone and be sure the request is genuine, JSA said.

Be careful with tracking numbers.

For any questions about a transaction, it’s best to reach out to the customer by phone via the number given at the time of purchase.

“You do not want to use the number given to you by the caller,” advised Ruddock.

JSA does not advise giving out the tracking number on a shipment. If a tracking number of a package is given to someone other than the customer, it may be possible for that person to redirect the merchandise.

JSA has also seen cases where a caller, pretending to be from a retail store, contacts a supplier and requests that a high-end item be sent to the store. The caller later diverts the shipment to a different address.

Set a limit on the number of times an address can be changed on a shipment, said Ruddock, and be clear with the shipper about how change of address requests should be handled.

Some companies, he said, have specified to their shipping company that if there are any attempts to change the address, the package should instead be returned to the company.

Make sure employees know the company’s cybersecurity policy.

Every company should have a written cybersecurity policy that is read and signed by employees, said JSA.

Be sure to regularly review the cyber-protocols with employees so everyone is on the same page.

Select cyber security firms also offer tests that allow employers to determine their employees’ ability to avoid phishing attacks and other scams.

Provide additional training to those employees who need it, advised Ruddock.

For more information about cybersecurity, visit the JSA website.
Lenore Fedowis the associate editor, news at National Jeweler, covering the retail beat and the business side of jewelry.
tags:

The Latest

Future Fortune sapphire ring
TechnologyMar 28, 2024
Pinterest’s 2024 Wedding Report Is Out

The report shows that couples are searching for vintage and antique rings, gold jewelry, pearls, and colorful pieces.

David Ettinger
IndependentsMar 28, 2024
David Ettinger of Bechdel Jewelers Dies at 69

He’s remembered as a “font of passion,” leaving behind a legacy of dedication to his craft and community.

Jewelers of America logo
IndependentsMar 28, 2024
JA to Host Series of Learning Workshops

The first one will take place next month during the Jewelers of Louisiana’s and Mississippi Jewelers Association’s conventions.

Jewelers of America Fly In Washington, D.C.
Brought to you by
How Jewelers of America Represents Your Business

For over 30 years, JA has advocated for the industry, fought against harmful legislation and backed measures that help jewelry businesses.

Jaeger-LeCoultre Madison Avenue NYC store
WatchesMar 28, 2024
Peek Inside Jaeger-LeCoultre’s Revamped NYC Flagship

The redesigned boutique features interactive displays and a workshop space for hands-on learning about watchmaking.

Weekly QuizMar 21, 2024
This Week’s Quiz
Test your jewelry news knowledge with this short test.
Take the Quiz
Asian Star’s diamond manufacturing facility in India
SourcingMar 27, 2024
Compliance, Caution, and Concern: The Current Outlook of Indian Diamantaires

There is a willingness to comply with new government-mandated regulations, with an insistence that they should be practical and realistic.

Kira Diam solar plant
Lab-GrownMar 27, 2024
Indian Lab-Grown Diamond Manufacturers Keep Growing

A combination of factors is driving growth in the industry despite the precipitous drop in prices across the board.

BTYB-HoBrothers-updated.png
Brought to you by
The Scalable, Professional, and Effortless Solution for High-Demand Custom Jewelry Retailers

Ho Brothers offers scalable solutions for the future of custom jewelry.

Bharat Ratnam, a Mega Common Facilitation Centre (CFC)
SourcingMar 27, 2024
Reinvigorating SEEPZ, the Epicenter of India’s Studded Jewelry Exports

The zone’s modernization will enhance and increase India’s jewelry manufacturing capabilities while aiding small and mid-sized businesses.

SRK Empire and SRK House
Policies & IssuesMar 27, 2024
SRK Exports’ Journey Toward Net Zero Impact

By the end of this year, SRK’s diamond manufacturing complexes will achieve net zero emissions, one of an impressive array of achievements.

Georgia May Jagger Tommy Hilfiger ad campaign
FinancialsMar 27, 2024
Movado’s Full-Year Sales Sink 11%

The company plans to invest $25 million in marketing initiatives to boost awareness around its namesake and licensed brands.

Hand holding shopping bags
SurveysMar 27, 2024
Consumer Confidence Held Steady in March

Optimism about the current state of the economy was offset by anxiety around inflation and the political environment.

Bernadette Mack
Policies & IssuesMar 27, 2024
Mercury Free Mining Hires Bernadette Mack

The former WJA executive director is MFM’s new managing director.

April Is Diamonds Do Good Month
Policies & IssuesMar 27, 2024
Diamonds Do Good Announces Its April Initiative

DDG encourages retailers to educate customers on the positive impact of purchasing natural diamonds.

Tiffany & Co. With Love, Since 1837
MajorsMar 26, 2024
Tiffany & Co. Debuts ‘With Love, Since 1837’ Campaign

Highlighting the most iconic Tiffany collections, it’s inspired by the company’s late window designer, Gene Moore.

National Jeweler columnists Duvall O’Steen and Jen Cullen Williams
ColumnistsMar 26, 2024
Creative Connecting: AI Tools and Tips for Social Media

Jen Cullen Williams and Duvall O’Steen explore how jewelers can save time and money by using AI to analyze engagement and create content.

Nordstrom Men’s Store New York City
MajorsMar 26, 2024
Nordstrom May Go Private, Says Report

The retailer previously turned down an $8.4 billion offer in 2018.

Interior of Miami Lakes Jewelers
IndependentsMar 26, 2024
Miami Lakes Jewelers to Close After 37 Years

The Florida store’s owner Miguel Gonzalez is retiring.

 International Gemological Institute
GradingMar 26, 2024
IGI Announces Tech for ID’ing Lab-Grown Colored Diamonds

The lab stresses the importance of accurate identification, as the difference in price is “substantial.”

Kendra Scott lab-grown diamond jewelry
CollectionsMar 25, 2024
Kendra Scott Debuts Lab-Grown Diamond Fashion Jewelry

The brand also plans to expand its retail footprint from 138 to 200 stores over the next three years.

Instappraise logo NAJA logo
Events & AwardsMar 25, 2024
NAJA, Instappraise Offering Scholarships for Aspiring Jewelry Appraisers

One is reserved for a NAJA member, the other for a non-member.

Carie Lehrke and Megan Mattice
MajorsMar 25, 2024
Borsheims Announces New VP of HR, Assistant Manager

Longtime employees Carie Lehrke and Megan Mattice have received promotions.

My Next Question graphic vintage jewelry webinar
Recorded WebinarsMar 22, 2024
Watch: How to Buy and Sell Vintage Jewelry

Three guests joined National Jeweler and Jewelers of America to discuss trending time periods, spotting reproductions, and more.

Chris Clipper and Robert Lepere
MajorsMar 22, 2024
David Yurman Announces New CFO, Chief People Officer

Chris Clipper and Robert Lepere join the company with 50 years of combined experience.

Nakard pyrite earrings
CollectionsMar 22, 2024
Piece of the Week: Nakard’s Pyrite Earrings

The trendy, metallic earrings wink at classic spring colors.

Grizzly Mining rough emeralds
SourcingMar 21, 2024
Grizzly Sells 4,145-Carat Emerald for Over $1M

The miner’s March auction generated $19 million.

Helen McCluskey
MajorsMar 21, 2024
Signet Jewelers Names New Board Chair

Helen McCluskey will succeed H. Todd Stitzer when he meets his 12-year term limit in June.

×

This site uses cookies to give you the best online experience. By continuing to use & browse this site, we assume you agree to our Privacy Policy