Majors

Saks, Lord & Taylor the Latest Hit by Hackers

MajorsApr 03, 2018

Saks, Lord & Taylor the Latest Hit by Hackers

They reportedly gained access to the retailers’ cash register systems to steal payment card data from more than 5 million customers.

2018_Lord_and_Taylor.jpg
Hudson’s Bay Company announced Sunday that hackers had gained access to the debit and credit card numbers of customers at two of its retailers--Lord &Taylor and Saks.

New York--Saks Fifth Avenue and sister retailer Lord & Taylor just joined the long list of large companies that have been hacked.

On Sunday, parent company Hudson’s Bay Co. issued a short statement confirming that it had become aware of a “data security issue” involving the credit and debit card numbers of customers who shopped at certain Saks Fifth Avenue, Saks Off 5th and Lord & Taylor stores in North America.

While the investigation is ongoing, HBC said it doesn’t appear the breach impacted customers who shopped at any of its other stores or online, including on Gilt.com.

“The company deeply regrets any inconvenience or concern this might cause,” the statement reads. “Once the company has more clarity around the facts, it will notify customers quickly and will offer those impacted free identity protection services, including credit and web monitoring.”

HBC did not release any specifics about the number of consumers or location of stores impacted, but in a blog post also published Sunday, Gemini Advisory pinned the attack on a cybercrime syndicate known as JokerStash or Fin7.

The cybersecurity research firm said Fin7 announced March 28 it would be releasing for sale more than 5 million stolen debit and credit card numbers on the dark web, and already has put about 125,000 out there.

Fin7 didn’t say where it obtained the numbers, but Gemini said it confirmed with a “high degree of confidence” that the numbers came from Saks Fifth Avenue and Lord & Taylor. It estimated the breach occurred between May 2017 and now, impacting all Lord & Taylor and 83 Saks stores mainly in New York and New Jersey.

The research firm said it is “among the most significant credit card heists in modern history.”

A spokesperson for HBC declined to comment on Gemini’s statement.

Cybercrime is a growing problem for retailers, including retail jewelers.

In its recently released annual crime report for 2017, the Jewelers Security Alliance noted a “large dollar increase” in thefts by deception and impersonation made possible by the internet, with the average loss from this type of incident topping $1 million.

JSA President John J. Kennedy called it a “dangerous and growing crime trend” for the industry.

On Monday, he offered a number of cybersecurity tips for retailers. Some, he noted, might involve hiring an IT consulting firm.

Kennedy said retailers need to have proper firewalls and up-to-date anti-malware software for all systems, and they need to avoid visiting “questionable and risky sites.”

Jewelers

also need to educate their staff on the common mistakes made that let hackers in.

Kennedy said one of the main methods cybercriminals employ is social engineering, in which they use various methods to win the trust of the company’s employees in order to gain unauthorized access to its IT system.

(The New York Times reported this is what was used by the hackers who targeted Saks and Lord & Taylor. The credit and debit card numbers were stolen via software implanted into the stores’ cash register systems that, most likely, was installed through phishing emails sent to HBC employees.)

He said staff need to be told, or reminded, not to open or click into unknown or suspicious emails.

They also need to be aware that emails can be spoofs—which use the exact email address of known individuals—or come from someone who has obtained an email address that is very similar to, but not exactly the same as, a known party’s address. They need to look for foreign domains, misspellings and other anomalies in emails.

When a transaction is involved, Kennedy recommends calling the person on the phone to confirm that it is not a fraud.

He also recommends having a written cybersecurity policy employees have to read and sign, and having regular staff meetings that include reviews of the company’s cybersecurity protocols.
Michelle Graffis the editor-in-chief at National Jeweler, directing the publication’s coverage both online and in print.

The Latest

Movado Connect 2.0 watches
FinancialsNov 26, 2025
Movado CEO Talks Tariffs, Growing Interest in Accessible Luxury Watches

During its Q3 call, CEO Efraim Grinberg discussed the deal to lower tariffs on Swiss-made watches, watch market trends, and more.

Rosior Pumpkin Ring
TrendsNov 26, 2025
Piece of the Week: Rosior’s Pumpkin Ring

Rosior’s high jewelry cocktail ring with orange sapphires and green diamonds is the perfect Thanksgiving accessory.

Greenwich St. Jewelers Embrace Your True Colors Holiday Campaign
IndependentsNov 26, 2025
Greenwich St. Jewelers Launches Colorful Holiday Campaign

The “Embrace Your True Colors” campaign features jewels with a vibrant color palette and poetry by Grammy-nominated artist Aja Monet.

Recipients Collage 2025 - NJ (1872 x 1050 px) (1872 x 1052 px).png
Brought to you by
Impacting Tomorrow Today

How Jewelers of America’s 20 Under 40 are leading to ensure a brighter future for the jewelry industry.

Grandview Klein scholarships
Events & AwardsNov 26, 2025
Grandview Klein Presents 4 Scholarships in Namibia

The company gave awards to four students at the Namibia University of Science & Technology, including one who is a Grandview Klein employee.

Weekly QuizNov 20, 2025
This Week’s Quiz
Test your jewelry news knowledge by answering these questions.
Take the Quiz
Margaret “Maggie” Hoisik
IndependentsNov 25, 2025
Pearl Stringer Margaret Hoisik Dies

She is remembered as an artist who loved her craft and was devoted to her faith, her friends, and her family.

Finestar manufacturing
SourcingNov 25, 2025
Finestar Opens Diamond Manufacturing Facility in Johannesburg

It joins the company’s other manufacturing facilities globally, including in India, Botswana, and Namibia.

roseco-catalog.png
Brought to you by
Roseco Releases New Full-Line Catalog

Roseco’s 704-page catalog showcases new lab-grown diamonds, findings, tools & more—available in print or interactive digital editions.

State Property Toadstool Pendant
TrendsNov 25, 2025
Amanda’s Style File: Polka Dots

The polka dot pattern transcends time and has re-emerged as a trend in jewelry through round-shaped gemstones.

Stock image of gavel and books
CrimeNov 25, 2025
Former Arizona AG Official Charged With Trafficking Stolen Jewelry

Vanessa Hickman, 49, allegedly sold a diamond bracelet that was mistakenly sent to her home.

GIA executives John Koivula, Kathryn Kimmel, Susan Jacques, Tom Moses, Alice Keller, James E. Shigley
Events & AwardsNov 25, 2025
GIA Awards Susan Jacques With Its Highest Honor

GIA’s former president and CEO was presented with the Richard T. Liddicoat Award for Distinguished Achievement.

20251124_MNQ social media etiquette header.jpg
Recorded WebinarsNov 24, 2025
Watch: Top Tips for Social Media Etiquette

Social media experts spoke about protecting brand reputation through behaving mindfully online.

Breitling house of brands
WatchesNov 24, 2025
Breitling Reveals Plans for Gallet, Universal Genève

In 2026, the three will come together as “House of Brands,” with Gallet sold in Breitling stores and Universal Genève sold separately.

Cynthia Erivo in Muse’s Have a Heart x Cynthia Erivo Collection
CollectionsNov 24, 2025
Muse Debuts a Wicked 'Have a Heart x Cynthia Erivo' Sequel

The second drop, which includes more Elphaba-inspired pieces from additional designers, will continue to benefit nonprofit Dreams of Hope.

J.R. Dunn Jewelers employees
IndependentsNov 24, 2025
J.R. Dunn Jewelers Names New President

Second-generation jeweler Sean Dunn has taken on the role.

Origin De Beers Group logo
SourcingNov 21, 2025
De Beers’ Branded, Traceable Diamonds Roll Out to 19 Retailers

Called “Origin by De Beers Group,” the loose, polished diamonds are being sold in a total of 30 stores in the United States and Canada.

Melissa Kaye Rocky Infinity Emerald Necklace
CollectionsNov 21, 2025
Piece of the Week: Melissa Kaye’s ‘Rocky Infinity’ Necklace

The lariat necklace features a 4.88-carat oval-cut Zambian emerald in 18-karat yellow gold.

Phillips auction of The Vanderbilt Sapphire brooch
AuctionsNov 20, 2025
Vanderbilt Jewels Shine at Phillips Sale, Pink Diamond Withdrawn

A 43-carat sapphire brooch from the Vanderbilt collection was the top lot of the Geneva sale.

Rebecca Rau Jewels Green Flame Necklace
CollectionsNov 20, 2025
Rebecca Rau Jewels Debuts With ‘Then & Now’ Collection

Rau is a fourth-generation art and antique dealer from M.S. Rau gallery whose first jewelry collection merges artifacts with modern design.

Purvi Shah
Policies & IssuesNov 20, 2025
RJC Names New Executive Director

Former De Beers sustainability leader Purvi Shah will take over the role in February 2026.

La Joux-Perret manufacturing facility in La Chaux-de-Fonds, Switzerland
WatchesNov 20, 2025
LVMH Takes Minority Stake in Citizen Group-Owned Movement Maker

La Joux-Perret is based in La Chaux-de-Fonds, Switzerland, and makes solar quartz as well as mechanical watch movements.

Julia Griffith
GradingNov 20, 2025
Julia Griffith Joins SSEF as Head of Education

She previously taught at Gem-A and is the founder of The Gem Academy.

Helena Bonham Carter in Larkspur & Hawk Once Upon a Time Campaign
CollectionsNov 19, 2025
Larkspur & Hawk Celebrates 25 Years With Helena Bonham Carter Campaign

The British actress and her daughter modeled pieces from the brand’s new “Palette” capsule for its “Once Upon a Time” holiday campaign.

Google reviews on a phone screen and a laptop
TechnologyNov 19, 2025
Google Has a New Form for Reporting ‘Review Bombing’ Attacks

Plus, the tech giant shares the steps retailers should take if they believe they’re a victim of a review extortion scam.

Shaftel Diamonds logo and jeweler’s bench
IndependentsNov 19, 2025
Houston Jeweler Keith Shaftel Retires, Next Generation Steps In

Danny and Gaby Shaftel are now Shaftel Diamonds’ CEO and chief operating officer, respectively.

Midas chain mini studs
TrendsNov 19, 2025
Midas Chain Releases 2025 Holiday Style Guide

The jewelry manufacturer’s seasonal offering features its new “Melodie” bangles, as well as mini stud earrings and layering pieces.

Jewelry from NYC Jewelry Week 2024
Events & AwardsNov 18, 2025
NYC Jewelry Week 2025: 12 Must-See Events

With more than 140 activations taking place in New York City now through Nov. 23, these 12 events are can’t-miss moments.

×

This site uses cookies to give you the best online experience. By continuing to use & browse this site, we assume you agree to our Privacy Policy