Important Customer Notice Important Notice: Cyber Incident Update

Back to news

We want to thank our customers for their patience and continued support during this time.  The Wine Auctioneer Team alongside IT and cyber security experts have been working hard on the investigation into the cyber incident targeted at our sister site WhiskyAuctioneer.com.  We have been implementing actions that address the findings to ultimately get our services back up and running.  

The reliability and security of our service for our customers is paramount, and we needed to take this time to investigate things fully and make sure we have steps in place to support the integrity of our service so we can continue delivering to the high-level our customers have come to expect.   

 

WHAT HAPPENED? 

At approx. 22.30 (BST) on 21 April,  our sister site WhiskyAuctioneer.com experienced a targeted, technologically sophisticated, sustained and malicious cyber attack on the  website. 

As a precaution we have kept the Wine Auctioneer site offline whilst we conducted an investigation to understand if there was any impact on the WineAuctioneer.com site.  As the attack was directed at the WhiskyAuctioneer.com site, we have no evidence of unauthorised access of personal data on the WineAuctioneer.com site – and no evidence of unauthorised access to payment details (credit/debit card or bank account information), if stored with us.  Still, we take data security seriously, so as a precaution we informed those customers who could potentially have been impacted and gave them some recommended steps to take as a precaution. 

 

WHAT HAVE WE DONE? 

Despite the attack being focused on WhiskyAuctioneer.com, we have taken the opportunity to also put in place on Wine Auctioneer improvements and changes to help mitigate against potential cyber incidents in the future. 

Here is an overview of the key things that have been happening to help mitigate potential cyber incidents in the future: 

  • Even faster response times to cyber attack: Although WhiskyAuctioneer.com were quick to identify the cyber attack and enact subsequent steps to mitigate, this response time will be enhanced even further and Wine Auctioneer will be able to take advantage of this.  This includes implementation of improved monitoring systems along with technical improvements that assist in automated response.  In addition, there are redundancies built in through access to additional, highly-experienced resources. 

  • Additional security considerations on top of what is already in place: Security of the site is something we take seriously.  Most of the developments will be behind the scenes, but on Wine Auctioneer you will see some things changing as we go forward – for example, a hardened password security policy. You may notice this initially through a mandatory reset of passwords and stricter password requirements. 

  • Website improvements to minimise impacts: Changes, again, will be mostly behind the scenes. However, we are looking at this from two perspectives and also identifying where these changes will not just minimise impacts but also potentially improve services on the site. 

  • Keeping one step ahead: The type of attack that was conducted on WhiskyAuctioneer.com is a reality to businesses based entirely online, or even just with a presence there. As such there is a need to work together in partnership with others in a similar position to share knowledge, plans and strategies and information pertaining to malicious tactics and techniques.  WhiskyAuctioneer.com are actively pursuing opportunities to become part of the wider discussion and partnership working surrounding cyber security both at a local and national level – Wine Auctioneer will be able to feed into the processes and gain from the knowledge and information shared. 

  • Continue to support the investigation: The investigation confirmed that this was a targeted and malicious attack on WhiskyAuctioneer.com.  The relevant authorities were notified and Wine Auctioneer will, if useful, certainly comply with assisting in the investigations. 

 

WHAT ABOUT UPCOMING AUCTIONS? 

We are pleased to confirm that the next auction will take place from 15-25 May.  Our regular monthly auction schedule resumes following this, and you can see the dates those will be held, along with bottle submission cut-off dates, here

 

I HAD BOTTLES LISTED FOR THE PREVIOUS AUCTION THAT WAS POSTPONED, WHAT HAPPENS TO THEM? 

Your bottles will be automatically  listed in the May auction. 

 

I HAVE MORE QUESTIONS, WHO DO I ASK? 

Our Customer Service team is available to help, so please contact them regarding any further questions you may have.