Graff Gets Hit by Ransomware Attack
The data breach included some personal details of high-end clients.
Ransomware is malware that uses encryption to hold a victim’s system or personal files and demands payment to get them back.
For most people involved in the Graff data breach, it included details like their name and potentially their home address—which can be retrieved in the public domain from other sources– rather than any other confidential details that would put them at risk of identity theft.
A Graff spokesperson said the brand informed “the small group of individuals whose personal data was compromised to such an extent” and advised them on the appropriate steps to take.
The brand’s security systems alerted it to the activity, allowing it to react quickly and shut down its network.
Graff said it has been working with the U.K.’s Information Commissioner’s Office and relevant law enforcement on the incident.
“Thanks to our robust back-up facilities we were able to rebuild and restart our systems within days - crucially with no irretrievable loss of data,” the spokesperson said.
“Sadly, it appears that notable brands, corporations and even government departments are deliberately targeted by unscrupulous operators to extort money, cause disruption or simply embarrassment. Cybercrime continues to rise in scale and complexity. It is a threat to every business. Maintaining the highest level of security against these threats has always been a top priority for us. We are continually strengthening our systems to counter these threats as they evolve.”
The group known as Conti is said to be behind the attack, the U.K.’s The Times reported, leaking the details of the brand’s high-end clientele to the dark web.
In a September press release, the Cybersecurity and Infrastructure Security Agency said it and the Federal Bureau of Investigation had seen an increase in the use of Conti ransomware in more than 400 attacks on U.S. and international organizations.
Earlier this year, the FBI said it had identified at least 16 Conti ransomware attacks that targeted healthcare and first responder networks in the U.S.
While the hacks that tend to make headlines are the bigger ones, small businesses should also protect themselves against such crimes.
The Jewelers’ Security Alliance recommends the following actions to prevent cybercrime.
1. Have proper firewalls, anti-virus, and anti-malware for all systems, and keep them up to date.
2. Don’t let employees use company internet-connected devices at work for personal use or download software without permission. Additionally, don’t let them introduce personal memory sticks into a company system.
3. Have strong, unique passwords.
4. Beware of phishing. One of the main pathways for cyber criminals is to lead someone to open and click on a link in an email which will unleash malware to penetrate the system, JSA said.
So, don’t open or click on unknown or suspicious emails. Even emails from people and customers or vendors that might seem familiar can be spoof emails or from someone who has obtained an email address only slightly different from a real email address.
Additionally, look for unfamiliar foreign domains, misspellings, and other anomalies.
5. Beware of social engineering, which is obtaining confidential information by manipulating and/or deceiving people.
Criminals can obtain information on company personnel, customers, ordering, shipping procedures, payment methods, and other information for a fraudulent transaction through impersonation, email correspondence, research on social media, or other means.
So, be careful of the information provided to the public by email, website, social media, or phone.
Also, confirm the identity of the person to whom you are talking. If the interaction includes a transaction, call the known customer on the telephone to confirm there hasn’t been fraudulent impersonation.
6. Avoid visiting questionable and risky sites.
7. Don’t download questionable apps from obscure or unknown companies.
8. Have a written cyber security policy that employees must read and sign.
9. Have regular staff meetings and periodic reviews of cyber protocols for the business.
The Latest
Members of the founding family have partnered with Mexican retail company El Puerto de Liverpool to acquire Nordstrom.
The brand has opened its second U.S. location in the Fontainebleau resort and casino.
Associate Editor Lauren McLemore highlights pieces from the AGTA Spectrum & Cutting Edge Awards she’d be thrilled to unwrap on Christmas.
A Diamond is Forever hosted a holiday celebration in honor of their new marketing campaign, ‘Forever Present.’
The move is one of several cost-cutting measures outlined by the company as it faces a weaker luxury market and other challenges.
The retailer’s “On the Clock” campaign celebrates how time, precision, and purpose come together.
Associate Editor Natalie Francisco chose her 12 favorite Piece of the Week picks from the year gone by.
‘Forever Present’ campaign revives the iconic A Diamond is Forever tagline and celebrates the diamond dream.
Lab clients have the option to request this addition on their emerald reports.
Jamie Dunton and Gabriella Botelho are the first graduates of the program, created by the WJA Foundation and Julius Klein Diamonds.
In the spirit of giving, Retrouvaí will donate $4,000 from the sale of this ring to the Los Angeles Regional Food Bank.
Co-owner Dan DeVries shared what it’s like moving into a space triple the size of its old store and how it feels to be a “real jeweler” now.
Along with the latest “Gardens” collection, the brand has released limited-edition designs offering more indulgent pieces.
The 2,488-carat diamond recovered from a mine in Botswana has been dubbed “Motswedi” while its 1,094-carat sibling is “Seriti.”
The average price per carat hit a record high for the miner, which said it remains unaffected by the conflict in Mozambique.
The nearly 17-carat stone made history for the color-change gem that, according to the auction house, is experiencing a “notable surge” in the market.
More than a century after survivors gifted a Tiffany timepiece to the captain of the ship that rescued them, the jeweler has reclaimed it.
The videos highlight how pieces from the “Xpandable” and “Reversible Xpandable” collections put the wearer in the spotlight.
Feldman reflected on 45 years in the jewelry industry and clarified that it’s not a total retirement.
The luxury brand is being honored for excellence in high jewelry design in its “Haute Joaillerie Sport” collection.
Circelli was a pioneer in the world of TV shopping who is remembered for his passion for gemstones and his big personality.
The nearly 6-carat stone headlined the recent jewelry auction, which also featured Mica Ertegun’s jewelry.
“The History of Diamond Engagement Rings: A True Romance” is a 128-page small-format book containing more than 165 images.
Gearys opened a 6,200-square-foot Rolex store with a design that pays homage to the brand’s connection to the ocean.
The diamond cut grade is now available for marquise- and pear-shaped diamonds.
DDG said the honorees’ business practices embody a commitment to positive social impact, industry innovation, and community empowerment.
Estimates on the size and value of the solitaire diamond, which is mounted on a diamond pavé-set yellow gold band, vary.