Originally Posted by
jwlowry
Like so many of us, my data was compromised. I found out not from Marriott, but rather when I started receiving notifications from other web sites where I use the same email address that was on file with SPG as my login ID. So far in just over a week, my email account was hacked, someone attempted to login to Apple using my Apple ID, several non-travel accounts had access attempts, and my Delta Air Lines and Hertz accounts were locked because of hacking attempts. None of these attempts has been successful, as I use different passwords, but I have had several locked, which was not good when, for example, I was flying with electronic boarding passes and could not access my Delta app.
What makes me sure these attacks are a result of the SPG data breach? Well, they began the day after the breach was made public and, in every instance where I have been able to get information (from Apple, Xfinity, and two other sites), the hacking attempts have come from Chinese IP addresses. I signed up for the Web Watcher service offered as "compensation" by Marriott to help manage the data breach, but the service apparently does nothing to monitor these types of attacks, as Kroll insists everything is fine.
Has anyone else experienced this problem?
Even if the service could pick up every attempt to sell the stolen data, I believe Kroll only monitors current activity. Since the breach started in 2014, hackers that plan to sell the data probably had already done so. Hackers who still plan to distribute the purloined data, can simply wait a year.
Sorry about what happened to you.