Sponsored By

Wingstop investigates possible data breachWingstop investigates possible data breach

Company cites “data security attack” at four franchise units

Ron Ruggless, Senior Editor

January 20, 2015

2 Min Read
Nation's Restaurant News logo in a gray background | Nation's Restaurant News

Wingstop Restaurants Inc. is investigating a possible data breach in a “security attack on point-of-sale systems” at four of its franchised locations, the company said over the weekend.

The Dallas-based chicken wing chain said the suspected breach, which could have enabled attackers to capture customer payment card information, affected three restaurants in California and Texas in June 2014 and July 2014, and one Texas restaurant in two periods of 2012.

“We regret that this incident occurred and apologize for any inconvenience or concern this may cause our customers,” said Charlie Morrison, Wingstop CEO, in a statement. “We will continue to work with our franchisees to enhance the security of their systems and protect the privacy and security of customer information.”

After indications of suspicious activity, Wingstop retained an independent forensic investigative firm to review the Internet-connected POS systems at all of its U.S. franchise locations, the company said.

The more recent incidents involved one franchise restaurant in Corpus Christi, Texas, and one in Union City, Calif., which each had malware on their POS systems between June 4, 2014, and July 31, 2014, the company said. Wingstop said it also received one report of suspicious activity that occurred around the same time frame, involving 20 customer payment cards that had been used at one franchise in Lubbock, Texas.

The suspected 2012 case involved a franchise unit in Grand Prairie, Texas, that had malware on its POS system in two periods, May 5 to June 27 and Nov. 11 to Dec. 9.

In each instance, Wingstop assisted franchisees by immediately removing the Internet-connected POS hard drives and replacing them with new systems, the company said.

“Wingstop franchisees operate entirely independent POS systems that are neither managed by nor connected to a central location,” Wingstop said in its statement. “The investigation of the Internet-connected POS systems has detected no evidence of malware on the systems at any other location.”

As a precaution, Wingstop urged customers of the four locations to monitor their payment card account activity closely and report any suspicious activity to their payment card issuer immediately.

Wingstop said it would offer a year of complimentary identity theft protection services to any customer whose payment card information may have been affected, and would post updates on its website.

The retail industry has been hit by a number of data breaches over the past year, including the restaurants Chick-fil-A, Dairy Queen, Jimmy John’s and P.F. Chang’s China Bistro.

Wingstop owns and franchises more than 700 restaurants in the United States, Mexico, Russia, Indonesia, Philippines and Singapore.

Contact Ron Ruggless at [email protected].
Follow him on Twitter: @RonRuggless

Read more about:

Jimmy John’s

About the Author

Ron Ruggless

Senior Editor, Nation’s Restaurant News / Restaurant Hospitality

Ron Ruggless serves as a senior editor for Informa Connect’s Nation’s Restaurant News (NRN.com) and Restaurant Hospitality (Restaurant-Hospitality.com) online and print platforms. He joined NRN in 1992 after working 10 years in various roles at the Dallas Times Herald newspaper, including restaurant critic, assistant business editor, food editor and lifestyle editor. He also edited several printings of the Zagat Dining Guide for Dallas-Fort Worth, and his articles and photographs have appeared in Food & Wine, Food Network and Self magazines. 

Ron Ruggless’ areas of expertise include foodservice mergers, acquisitions, operations, supply chain, research and development and marketing. 

Ron Ruggless is a frequent moderator and panelist at industry events ranging from the Multi-Unit Foodservice Operators (MUFSO) conference to RestaurantSpaces, the Council of Hospitality and Restaurant Trainers, the National Restaurant Association’s Marketing Executives Group, local restaurant associations and the Horeca Professional Expo in Madrid, Spain.

Ron Ruggless’ experience:

Regional and Senior Editor, Informa Connect’s Nation’s Restaurant News and Restaurant Hospitality (1992 to present)

Features Editor – Dallas Times Herald (1989-1991)

Restaurant Critic and Food Editor – Dallas Times Herald (1987-1988)

Editing Roles – Dallas Times Herald (1982-1987)

Editing Roles – Charlotte (N.C.) Observer (1980-1982)

Editing Roles – Omaha (Neb.) World-Herald (1978-1980)

Email: [email protected]

Social media:

Twitter@RonRuggless

LinkedIn: www.linkedin.com/in/ronruggless

Instagram: @RonRuggless

TikTok: @RonRuggless

 

Subscribe Nation's Restaurant News Newsletters
Get the latest breaking news in the industry, analysis, research, recipes, consumer trends, the latest products and more.