Content |
Owners
2022
Creation of the holding company "Mercury Retail Holding"
The Cyprus holding Mercury Retail Holding, which manages the Red and White and Bristol alcohol store chains, registered Mercury Retail Holding in Russia at the end of December 2022. Read more here.
Discount Card User Data Leak
In early October 2022, it became known about a new leak of data from clients of the Krasnoye & Beloe network. According to Kommersant, citing materials from the Moshelovka platform created by the All-Russian Popular Front (ONF), one of the volunteers received a call from a fraudster who introduced himself as an investigator. He turned to a volunteer by pseudonym, which he used only to register in the loyalty program of the Red & White chain.
According to the head of the platform, Evgenia Lazareva, the information will be sent to Roskomnadzor.
We believe that hiding leaks of client databases threatens consumers, and organizations obliged to ensure data security do not have the right to hide this information and should be seriously punished, she said. |
This information is not true. |
According to Roskomnadzor, in January-September 2022 there were about 60 large leaks of personal data. More than 230 million records with personal information of Russians were posted on the Internet. According to Roskomnadzor, not only such personal data as last name, address and phone number, but also medical data, data on behavioral features, consumer preferences, etc. have been compromised.
The ILV believes that as a result of such leaks, "digital portraits" are created, which are used for fraud, bullying, defamation and other offenses on the network.[1]
The use of the brands "Red and White" and "Dodo Pizza" by fraudsters to steal money from citizens
For July-August 2022, the RTK-Solar team "" discovered more than 2,000 malicious ones that were domains used by attackers for the massive phishing on behalf of the brands "Red and White" and "." Dodo pizza Under the pretext of receiving pizza or a bottle of wine for just 1 ruble card victim, she was tied to a non-existent paid service with regular debits. It is blocked for September 2022 attack , but in the coming months it is possible to reincarnate this scheme in a new form. The company announced this on September 12, 2022. Read more.|[[Подробнее here here]].
2021: IPO failure
In November 2021, the owner of the Red & White and Bristol chains was unable to collect applications for the placement of shares at the desired price and postponed the IPO until better times. Business valuation twice as high as Magnit did not find understanding among investors.
2020: Customer Data Base made available for everyone to download
On January 28, 2020, it became known about the leakage of data from customers of the Krasnoye and Beloye alcohol market chain. The loyalty program base got on the Internet.
According to Vedomosti, since September 2019, part of the database with data on 124 thousand people has been sold on the Duplicates forum. They asked for 15 thousand rubles for her, and then it became available for download to everyone.
The base was constantly replenished. At the end of January, a database with data for 2 million people appeared on the Fricker Club forum, and for 4 million on the English-language Raid forum.
Then the Freedom Fox Telegram channel of information security specialist Pavel Sitnikov published a database of 17 million people allegedly having maps of the Krasnoye and Beloye network. The document contains the name, date of birth and phone number.
Vedomosti called randomly selected phone numbers from the database. Most of them were disconnected, but several people managed to get through. They confirmed that their names and surnames coincide with those indicated in the database and they are indeed the owners of the network's loyalty program cards.
Most likely, the number of customers of the alcohol market in the published database is greatly overestimated. According to Mikhail Burmistrov, CEO of Infoline Analytics, 6.5 million users are registered in the chain's loyalty program.
In "Red and White" reported that the company checks information about the leakage of personal data. According to a company representative, one of the employees may be involved in the incident, since the database is isolated from the external network.
Despite assurances that the databases are closed from external access, and confidential customer data is safe, experts indicated that theoretically any retail store has access to this database.
The price tag for these is low: only 1 ruble per 1000 lines. However, this base can be of value to competing alcohol networks, as well as telephone scammers and swindlers.[2]