Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Cybercrime

Boston Restaurant Group Confirms Credit Card Data Theft

The Briar Group has come forward with confirmation that customers at its eight Boston-area restaurants may have had their credit card data stolen.

Details on the security breach are limited but the company said the theft of credit card data “may have occurred from sometime in October 2013 to early November 2013.”

The Briar Group has come forward with confirmation that customers at its eight Boston-area restaurants may have had their credit card data stolen.

Details on the security breach are limited but the company said the theft of credit card data “may have occurred from sometime in October 2013 to early November 2013.”

The Briar Group’s confirmation follows buzz that a number of residents and visitors to Boston in the middle of November suffered from credit card data theft.

“As soon as the Briar Group became aware that our restaurants – and therefore our customers – may have been a target of this crime, we undertook an immediate investigation into this issue. Today we are reporting that the Briar Group’s systems were indeed infiltrated. The investigation remains active and ongoing,” the company said in a statement.

The Briar Group owns and operates eight restaurants in Boston –Anthem, City Bar, City Table, MJ O’Connor’s, Ned Devine’s, Solas, The Green Briar and The Harp.

From the company’s statement:

Advertisement. Scroll to continue reading.
  • Based on the initial results of our investigation, we believe the unauthorized access to card data at our restaurants may have occurred from sometime in October 2013 to early November 2013. We are still working to determine the exact dates and will update this website when we learn more.
  • Even if you visited one of Briar Group’s restaurants during this period, your credit card data may not have been stolen or used.
  • However, we urge all of our customers during this period to monitor your credit card statements carefully for fraudulent charges. You should not be responsible for any unauthorized charges on your card; you can contact your card issuer for more information.
  • We want to assure you that the Briar Group takes the security of the personal information and bank data of all of our customers seriously. For the past several years, we have been working with data service and security professionals McGladrey to assure that we meet or exceed industry standards in terms of data security. All of our systems are PCI compliant and updated regularly.

The company said it has worked with security experts to lock down its systems to determine if its payment system was hacked. However, it did not provide any details about the breach and whether malware was used to pilfer the data. 

“We have been working closely with law enforcement officials and are providing them with all available information to support their effort to identify the criminals who undertook this act,” The Briar Group said. 

Related Reading: PCI DSS 3.0 – The Impact on Your Security Operations

Written By

Ryan Naraine is Editor-at-Large at SecurityWeek and host of the popular Security Conversations podcast series. He is a security community engagement expert who has built programs at major global brands, including Intel Corp., Bishop Fox and GReAT. Ryan is a founding-director of the Security Tinkerers non-profit, an advisor to early-stage entrepreneurs, and a regular speaker at security conferences around the world.

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing for the latest cybersecurity threats, trends, and expert insights.

Click to comment

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Today’s attackers are no longer breaking in — they’re logging in. Join this live webinar as we break down the modern identity attack chain and examine how recent breaches exploited weaknesses in authentication, identity verification, and access management processes.

Register

AI has accelerated both sides of the fight. Adversaries are weaponizing vulnerabilities faster, while defenders are racing to ship detections and configurations. Join this live webinar as we explore how to prove your controls actually hold against new threats, map your security maturity, and unite breach simulation with automated pentesting into a single, coordinated program.

Register

People on the Move

Stephen Garcia has been named Chief Information Security Officer at BreachRx.

Kasper Lindgaard has been appointed Vice President of Security Strategy at CoreView.

Chaim Mazal has been named Chief Information Security Officer at GitLab.

More People On The Move

Expert Insights

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest cybersecurity news, threats, and expert insights. Unsubscribe at any time.