You are on page 1of 7

THE PRESS CONFERENCE OF RESOLVING CUSTOMER

INFORMATION LEAKAGE CRISIS OF MOBILE WORLD


THE HOST:

Warm greetings to all the guests and journalists who came to the press
conference of our Mobile World Joint Stock Company today. Please settle in
your seat, turn off your phones so that the substance of the press conference can
be more transparent.

Ladies and gentlemen, welcome to the conference of the leaking customer


information crisis of Mobile World on Wednesday, June 9th, 2021. I am Xuan
Dieu - Head of the MWG Communicative Department and I am also the host of
the press conference. Thank you for joining us to clarify the crisis of our
company. First of all, please let me introduce the participants of this conference:

● Ms. Trixie Lai is the General Director and the representative of MWG.
● Ms. Kristen Quinn is the Technical Director of MWG
● Ms. Jenny Ho is the representative of the Information Security
Department of Ho Chi Minh City who will join us to clarify the recent
confusing incident.

Now, I would like to invite the Director of Mobile World Joint Stock Company,
Ms. Trixie Lai to have a few words. Please Ma’am.

GENERAL DIRECTOR:

Good afternoon, my name is Ms. Trixie Lai and I’m the Director of Mobile
World Joint Stock Company. Today, on behalf of Mobile World Group, I would
like to express my sincerest thanks to all the media who were present at today's
press conference. Following the agenda of our crisis resolution, we will have 3
parts:

1. Crisis Summary
2. Explaining & Troubleshooting crisis
3. Questions and Answers

The reason our company held a press conference was because we wanted to
clarify questions about leaking customer information at Mobile World. On June
4th, a personal account named “Erwincho '' was uploaded to Raid Forums files
believed to be information of more than 5.4 million customers of our company
including email data, card data Banking, even transaction history... Immediately
after that, we had an investigation, we reviewed the entire system of the
company and we wanted to correct it with our guests and reporters currently
here that the information being circulated on this forum is incorrect. Our Mobile
World is confident with information security policies and techniques. We
confirm that there is absolutely no leak of customers' personal information.
Because this incident has caused a lot of damage to our company as well as left
a bad look in the eyes of customers who have trusted and used the services at
Mobile World Joint Stock Company, so we commit to continue to investigate
and clarify so that you can trust and keep supporting our new products in the
future.

THE HOST:

As for the recent share of Ms. Trixie Lai, we would like to emphasize to you
that: “Our company is committed to secure the privacy of customers'
confidential information, in order to respect and protect the rights and interests
of every customer.” However, relating to the incident at Mobile World Joint
Stock Company during recent times has caused customers to panic and lose
confidence in our company. To answer customer questions as well as strengthen
trust, I would like to invite Ms.Kristen Quinn - Technical Director to share more
details to all the journalists present at the press conference.

TECHNICAL DIRECTOR:

Dear all, after it was reported that Mobile World's technology system was
hacked by hackers, causing customers' financial information to be disclosed on
Raid Forums, our company has thoroughly checked the whole system. And
today, I would like to confirm to you that this is false information, Mobile
World's Information Technology system is still safe, operating normally and
unaffected.

All customer information remains confidential. Regarding the customer's card


information, such as card number, expiration date, date and time of purchase,
etc., is believed to be exposed. In this regard, I would also like to inform
everyone that our company does not store this information of our customers. So
it is impossible for this information to be leaked from Mobile World's system.
As you know, when customers make purchases and swipe their cards at our
stores, the POS machine that reads the customer's card is the bank's machine.
Then the data will be transferred to the four banks that Mobile World is linking
to perform payment activities. Therefore, Mobile World's System cannot
interfere in this process and is not allowed to store any customer information.

Because of that, the hacker Erwincho's claim to have hacked the Mobile World
system to get the information is not true. It's impossible that they can get the
information which is not stored by our company. Thank you.

THE HOST:

The recently shared information of Ms.Kristen Quinn - Technical Director of


Mobile World Group on correcting information that is believed to be leaked
confidential data of Mobile World customers on Raid Forums. As we have seen
in the past few days, Mobile World has faced many problems that we think
more than anyone else journalists here are people with an interest and
following. And was like her shared, it was you with your voice and pen that
helped make the information more multi-dimensional. However, today we also
look forward to sharing with you all the conclusions from the Information
Security Department of Ho Chi Minh City on the matter that occurred in our
company. In order to give you a clearer view on this issue, we would like to
invite Ms. Jenny Ho as the representative of the Information Security
Department to give a few words to all of you.

The representative of the Information Security Department:

Good afternoon everybody, I am Ho Thi Kieu Trang - Representative of the


Information Security Department.

As you know about the leak of customer information of Mobile World Joint
Stock Company, you may also suspect that it is very likely that customers using
Mobile World's services have leaked some personal information. However, after
the serious investigation, count to this current date June 9th, 2021; We have not
noticed any signs of attacks on system components related to personal
information being disclosed as well as signs of attacks on the company's user
personal information processing system MWG like this information is being
spread

Regarding the leaked information of thousands of bank account numbers


believed to be transactions at Mobile World, we believe that the important
information of customers' credit cards is not stored on the managed system of
Mobile World. However, our Information Security Department will continue to
coordinate with Mobile World and relevant authorities to check and review
more carefully. To avoid this unfortunate situation from happening again.
Thanks for listening.

THE HOST:

Dear all, that is the information that Mobile World Joint Stock Company has
until now and we want to clarify it for our beloved customers.

And now it's time for the journalists here to ask questions. So that we can
interact and exchange information that you are interested in Mobile World.
Besides that, we have also prepared the necessary information for the
presentation on powerpoint for you to easily follow the content. Please feel free
to ask questions. However, we are also extremely sorry for the limited time, so
we will answer a limit of 5 questions from the journalists present here. Sincerely
thanks!

Q&As:

J1: Excuse me, I'm a reporter from Tuoi Tre newspaper. I have a question.
According to you guys, Mobile World has had obvious damages, so can you
share what they are?

General Director:

Thanks for your question. I think I will be the one who answers this question.
Yes, honestly, the biggest damage was that our customers were puzzled and
worried. This incident has made our customers lose the trust and prestige of the
Mobile World brand because this misleading incident has caused a lot of
damage to our company, MWG shares of Mobile World Joint Stock Company
were only traded at 110,000 VND/share, down 2,000 VND, equivalent to 1.8%
of the value. With this drastic decrease, our company's capitalization estimate
has "evaporated" nearly 650 billion dong in just 1 day. Therefore, it has led to a
sharp drop in the value of our company's stock. This is an issue that we
absolutely do not want to happen. However, by this press conference and your
multi-dimensional writing, we believe the consumers will have a clearer view
and they can keep supporting us.
J2: Hello everyone, I am a reporter from VietnamNet newspaper. I have a
question: We received information sent to the newspaper that your Mobile
World currently does not protect consumer information effectively. What can
you say about this?

Technical Director:

As we have confirmed, the information that hackers share online is fake. The
confidential information of our customers is still under our absolute control. Up
to now, the company's information system and thegioididong.com website are in
a safe state and are the latest updates. And we also don't detect vulnerabilities or
cyber crime attacks. We guarantee that the customer information is always
being secured with our technical system. Thank you.

J3: So ma'am, in addition, we are told that there is a file allegedly stolen from
Mobile World showing the transaction history with the customer's unit number,
purchase address, credit card number, how would you explain this issue?

Technical Director:

After hearing the above information, we had an inspection to review the entire
security information system of the customer and we found that everything was
still normal, no data was spread out.

Regarding the disclosure of transaction history with the unit number, purchase
address, and credit card number of the customer, those news are all fake. As I
have said before, because the POS machine will read the customer's card and
transfer all the data to the bank, so in essence the bank is reading the customer's
card and storing the information. It can also be said that our system does not
store these customer data. Similarly, if a customer pays online through the
website, when paying will jump to a third-party payment gateway, so the
Mobile World website cannot save the customer's information. So if they go to
our website, it’s totally safe.

J4: If the leakage of confidential customer information really happens in the


future, how will you deal with this issue?

General Director: Actually, there's no need to wait until something goes wrong
in our company's information technology system, even if it's intentionally
attributed to something that Mobile World doesn't relate to, the Mobile World's
security process and information processing system has always been operating
safely at the highest level of security. In addition, our system security team
always implements a strict monitoring regime 24/24.

In the future, if the above incident really happens and comes from a technology
error in Mobile World's system, the company is ready to accept responsibility
and quickly fix the problem. The interests of our customers are always our top
priority.

J5: Ms Trixie Lai, do you have any recommendation or advice for the
consumers as well as other companies through this incident?

General Director: I believe Ms. Jenny Ho, the representative of the


Information Security Department of Ho Chi Minh City can answer this question
clearly.

The representative of Information Security Department of Ho Chi Minh


City:

The personal information, email information can be collected from many


different sources that have been leaked previously or through the phising. In
order to further strengthen the work of ensuring information security, especially
the protection of personal information, and the protection of the legitimate
rights and interests of users, businesses, organizations, the Department of Safety
information recommends that organizations and businesses need to strengthen
the implementation of management and technical measures to ensure the safety
of information systems serving internal operations as well as providing online
services to users like:

- Actively review the weaknesses and holes in the information system;

- Monitoring early detection of risks and signs of network attacks and promptly
handling arising problems.

- If you detect risks, signs of revealing or leaking personal information of users,


it is necessary to quickly overcome and promptly notify the Information
Security Department and relevant competent authorities for handling of
problems.
And I also want to emphasize that: "Users should be alert, avoid hastily
referencing, boycotting retail services because the information has not been
verified and confirmed by relevant authorities."

THE HOST:

Thank you for the questions from journalists and the answers from the
representatives. Ladies and gentlemen, The Q&A parts is the last part of the
conference. Our time for the meeting is going to end.

On behalf of Mobile World Joint Stock Company, we would like to sincerely


thank you for your questions and favors from the journalists to our company
today.

We hope that the information we provided would help clarify questions as well
as convey messages to customers. I hereby declare the end of the press
conference. Once again, we would like to thank everyone who took their
valuable time to attend the press conference. We wish you health and success.
Please keep supporting us.

You might also like