Industry Insights

Blog, Security

I’ll Take the User Permissions, Hold the Peanuts

by | Monday, December 2nd, 2024

Disney is all about magic and wonder, but something shocking almost happened with their park menus. A former Disney employee got into a menu app and made some dangerous changes. They messed with the allergen info on the menus, saying some foods were safe for people with peanut allergies when they weren’t. That could’ve been deadly.

Luckily, Disney caught it in time. The FBI got involved and said there’s no proof that any guests saw the fake menus. This wasn’t connected to a tragic event in 2023 when someone had a deadly allergic reaction at a Disney-owned restaurant.

What Went Wrong?

This all started because someone still had access to Disney’s systems when they shouldn’t have. The former employee, Michael Schuer, used his old work logins to make the changes. He even got into the app developer’s server.

What tipped Disney off? The prankster used the Wingdings font on the menus, a weird, unreadable font. That’s when Disney’s team spotted the issue and shut the app down. Before that, the hacker caused more trouble by locking employee accounts with repeated login attempts.

How Could This Have Been Stopped?

This whole mess could’ve been avoided if Disney had removed the ex-employee’s login access as soon as they left the company. That’s a basic rule for keeping systems safe.

Companies should always follow the Principle of Least Privilege. This means only giving employees access to the stuff they absolutely need to do their jobs. And when someone leaves, their access should be removed immediately.

Want to keep your business safe? Always pay attention to who has access and act fast when someone leaves. For more information about how we can help, give us a call today at 1-855-405-8889.

A Glimpse Into What Compliance Looks Like for Businesses

It’s easy to see all the reasons why you should make data regulations and compliance a priority. After all, you want to ensure you don’t violate the trust and security of your customers, as well as the integrity of your operations. If you make even one mistake, it...

AI Search Isn’t There Yet

People do this all the time: if they don’t know an answer, they just make something up that sounds right. It turns out AI has the same bad habit. A Study Put AI Search to the Test, and It Did Not Go Well Researchers at the Tow Center for Digital Journalism (part of...

Remote Work Is Great, but There Are Some Pitfalls

Do you have employees working remotely? If you do, the real question is, are you doing everything you can to keep them productive and secure? Remote work is awesome, but it comes with its fair share of risks. Today, we get into how to competently confront them. Remote...

Hiring IT is Hard (Here’s How to Make It Easier)

Do you have someone on your staff who can handle most IT-related issues for your business? If not, we’re sure your organization feels it in more ways than one. The issues that come from not having IT help are only made more frustrating when it comes time to find IT...

Let’s Take the Lid Off of CAPTCHA

We've officially reached the point where humans have to prove they're, well, human just to access websites. One of the most common ways to do this? CAPTCHA. CAPTCHA stands for Completely Automated Public Turing test to tell Computers and Humans Apart. It might sound...

Automation Isn’t Always the Best Business Option

Automation makes sense from an operations standpoint, and people see this despite the many who advocate for scaling back to save jobs. For every task that can be completed, however, less than half can be automated. When you consider all the tasks that a human might be...

More Reading from Industry Insights:

AI Search Isn’t There Yet

People do this all the time: if they don’t know an answer, they just make something up that sounds right. It turns out AI has the same bad habit. A Study Put AI Search to the Test, and It Did Not Go Well Researchers at the Tow Center for Digital Journalism (part of...

Hiring IT is Hard (Here’s How to Make It Easier)

Do you have someone on your staff who can handle most IT-related issues for your business? If not, we’re sure your organization feels it in more ways than one. The issues that come from not having IT help are only made more frustrating when it comes time to find IT...