BreachExchange mailing list archives

(update) Visa approved TXJ non-compliance with PCI


From: Al Mac Wheel <macwheel99 () wowway com>
Date: Mon, 26 Nov 2007 13:06:43 -0600

http://www.eweek.com/article2/0,1895,2215022,00.asp
[ ]

Credit card company Visa knew in late 2005 of the extensive security 
problems at TJX, but decided to give the retailer permission to remain 
non-compliant through Dec. 31, 2008, according to documents filed in 
federal court on Nov. 8.

The Dec. 29, 2005, letter from Joseph Majka, a fraud control vice president 
for Visa, was written months after cyber-thieves had already secretly 
infiltrated TJX's systems, starting the work that would ultimately become 
the worst data breach in credit card history.

[ ]
-
Al Mac


_______________________________________________
Dataloss Mailing List (dataloss () attrition org)
http://attrition.org/dataloss

Tenable Network Security offers data leakage and compliance monitoring
solutions for large and small networks. Scan your network and monitor your
traffic to find the data needing protection before it leaks out!
http://www.tenablesecurity.com/products/compliance.shtml


Current thread: