PayAsUGym hack exposes members' card details
Fitness website PayAsUGym has admitted that members' financial details were stolen when one of its servers was hacked on Thursday.
The discovery was made by security experts who found partial card numbers and home addresses on a public website.
The company acknowledged there had been "confusion" over earlier claims that it did not hold any card details.
Security expert Troy Hunt advised customers to cancel their credit card if they think details have been stolen.
PayAsUGym, which sells passes for gyms around the UK, alerted its members to the security breach in an email on Friday which said "one of the company's IT servers was accessed by an unauthorised person".
While it said email addresses and passwords were accessed, it claimed "we do not hold any financial or credit card information".
The company said 300,000 customers details had been stolen.
He said the first six digits and last four digits of people's cards had been "dumped on a website, presumably by the perpetrator".
Mr Hunt explained that fraudsters can use computer algorithms to work out complete credit card details "within seconds".
"PayAsUGym has stated that there is no card data at risk, yet here we have a screen grab of a large amount of card data," he said. "There's some transparency lacking here."
PayAsUGym said it had started using new servers after speaking with cyber security professionals.
The website said it used a "tokenised system" for customer payments which, it says, means card details are stored at the payment gateway - not on its servers.
PayAsUGym's Mr Ward added: "We don't hold the full number for security reasons. The payment is then made using a tokenised system."
The company advised concerned customers to contact them.
Add Commentall comments
Armed officers who spotted a speeding car in west Wales discovered a...
Top Republicans and Democrats in Congress have called for the...
In an exclusive shoot and interview with OK! Magazine, Lucy Pargeter...
Larger, heavier wheat kernels -- that's how associate professor Wanlong...
Stocks that moved substantially or traded heavily on Tuesday: MoneyGram...
South Korea says North Korea has fired a ballistic missile into the...