3 Comments

Summary:

Shoe retailer Zappos is facing a national class action suit one day after it warned customers that its servers had been hacked.

Amazon Zappos

Shoe retailer Zappos is facing a national class action suit one day after it warned customers that its servers had been hacked.

On Monday, the Amazon-owned shoe company sent a mass email stating that 24 million customer accounts had been breached. The incident resulted in hackers obtaining names, phone numbers, emails, encrypted passwords and the last four numbers of customer credit cards.

The lawsuit claims Amazon (NSDQ: AMZN) violated a part of the Fair Credit Reporting Act by failing to properly encrypt and secure customer information, and seeks unspecified damages for 24 million customers.

The lead plaintiff in the case is a Texas woman but the suit was filed in federal court in Louisville, Kentucky on the grounds that Amazon has servers located in that state.

As these type of hacking incidents have become more common, so too have related lawsuits. So far, though, few of these lawsuits been successful because customers have been unable to show that they have been harmed by the data breaches.

The Kentucky lawsuit appears based in part on a novel legal theory that customers will now be more susceptible to phishing and other online scams because hackers have their email. It also alleges the plaintiffs suffered emotional distress. Other high-profile data breach cases such as one involving Sony’s Play Station have been based in part on state consumer laws.

Although courts have been reluctant to find that customers have been harmed by data breaches, there is evidence this may be changing. A security publication recently reported
that an appeals court allowed customers to claim they suffered harm in the form of having to buy insurance for identity theft.

Some media publications this week praised Zappos’ for having a pre-arranged plan to respond to the data theft. The company claims that its customer credit cards remained secure because they were stored in a separate server.

Zappos class action
var docstoc_docid=”111067290″;var docstoc_title=”Zappos class action”;var docstoc_urltitle=”Zappos class action”;

You’re subscribed! If you like, you can update your settings

  1. Of course the suit was filed in Kentucky. Texas has a “loser pays” provision on the books that requires plaintiffs to pay the winners legal costs in civil suits seeking punitive damages. 

  2. Yes, interesting that the suit was filed in Kentucky.

  3. Here’s the word from the class action lawyers in Kentucky who filed the suit http://www.grayandwhitelaw.com/library/louisville-class-action-lawyers-file-zappos-class-action-lawsuit.cfm They look to be the first to file suit, but almost certainly not the last to file a lawsuit against Zappos

Comments have been disabled for this post