Here we go again seems rather pointless to say, but here we go again.
The latest news in this Data Breach can be found in this article in Dark Reading.
The basis of this breach is similar to another breach years ago involving a credit card processing company and the information that they possess.
This breach was found by Visa & MasterCard, and in their investigation they located a “sniffer” on their system. A sniffer basically is a malicious program that sniffs out the credit card numbers and sends back to the original scammers that installed it.
Mind you that this company SHOULD have been PCI compliant, but as of yet nobody knows if they were, or are.
This is yet another case of businesses not protecting the information that they have.
I don’t know yet if this company should have been implementing programs for the Red Flag Rules, but it would stand to reason that they would need to be compliant with those regulations along with PCI with the vast amount of knowledge that they possess on their system.
If you are overwhelmed by the processes as well as the potential mitigating factors involved with compliance feel free to contact me, if I can’t help you, I can surely find someone that can.
Wednesday, January 21, 2009
Credit Card Data Breach you may not hear about for awhile
Labels:
credit cards,
data breach,
Identity theft,
PCI-DSS,
red flag rules
Subscribe to:
Post Comments (Atom)
This is a good tip particularly to those fresh to the blogosphere. Brief but very precise information… Thank you for sharing this one. A must read post!
ReplyDeleteReally when someone doesn't be aware of after that its up to other viewers that they will help, so here it takes place.
ReplyDelete