Unauthorized access gained to about 800 JSTOR accounts

Share this article:

Digital library JSTOR is notifying approximately 800 users that their personal information may be at risk after their MyJSTOR accounts were accessed by an unauthorized third party.

How many victims? About 800. 

What type of personal information? Usernames, passwords, email addresses, primary areas of study, position/academic statuses, and institution affiliations.

What happened? An unauthorized third party gained access to MyJSTOR accounts, which contained the personal information.

What was the response? JSTOR is notifying impacted users and urging them to change their passwords. JSTOR is reviewing and enhancing security measures to prevent a similar incident from occurring.   

Details: The breach was discovered on March 17.

Quote: “We do not store credit card data or financial information of any kind, so this was not accessed,” according to the notification.   

Source: oag.ca.gov, “Important Security Notice from JSTOR,” March 31, 2014

Share this article:
You must be a registered member of SC Magazine to post a comment.

Sign up to our newsletters

RECENT COMMENTS

FOLLOW US

More in The Data Breach Blog

Sourcebooks payment card breach impacts more than 5,000 customers

More than 5,000 customers had personal information stolen, but roughly 9,000 notification letters were sent out as a precautionary measure.

Cyberswim notifies customers that payment card data may be at risk

Malicious software installed on Sept. 24 may have compromised personal information for visitors that made purchases between May 12 and Aug. 28.

Marquette University notifies graduate applicants of possible breach

Settings for an internal file server were inadvertently modified, making graduate school applications accessible to anyone with Marquette University login credentials.