American Express is warning customers that credit cards were exposed in a third-party data breach after a merchant processor was hacked.
Attackers abused open redirects on the websites of Snapchat and American Express in a series of phishing attacks to steal Microsoft 365 credentials.
The UK data regulator has fined American Express (Amex) £90,000 for sending over 4 million spam emails to customers within one year.
An expired certificate has led to the repeated removal of linked American Express credit cards from user's Google Pay accounts.
A phishing attack using a novel technique to steal credentials from American Express customers was recently found in an email inbox protected using Microsoft's Office 365 Advanced Threat Protection (ATP) by Cofense Phishing Defense Center researchers.