BreachExchange mailing list archives
Re: Montgomery Ward didn't tell consumers about credit card hack
From: Henry Brown <hbrown () knology net>
Date: Mon, 30 Jun 2008 14:37:05 -0500
Follow up with some interesting ADDITIONAL Details... http://ap.google.com/article/ALeqM5hMgFbRpfc74PW0CvbF3kFbWFkHsAD91IJCHG2 [...] Milgrom said Direct Marketing Services immediately informed its payment processor and Visa and MasterCard. Then, Milgrom said, Direct Marketing Services closely followed a set of guidelines, issued by Visa, on how to respond to a security breach. That included a report to the U.S. Secret Service. He said he believed by the end of December that Direct Marketing Services had met its obligations. [...] After being asked about those laws by The Associated Press, Milgrom said Direct Marketing Services now plans to contact consumers. [...] Along with the card numbers, their three-digit "security codes" and expiration dates, the thieves had the cardholders' names, addresses and phone numbers. The data had been organized in the same way, indicating the numbers likely came from the same database. CardCops' president, Dan Clements, also noticed that the vast majority of the cardholders were women, a clue that the records came from a merchant catering to a certain demographic. [...] It is not clear to Clements, though, whether the hackers were inflating their claim when they offered 200,000 records or whether Milgrom's number of 51,000 is accurate. [...] Links to the 44 state notification laws: http://www.ncsl.org/programs/lis/cip/priv/breachlaws.htm -------- Original Message -------- Subject: [Dataloss] Montgomery Ward didn't tell consumers about credit card hack From: lyger <lyger () attrition org> To: dataloss () attrition org Date: 6/27/2008 5:55 PM
http://www.wztv.com/template/inews_wire/wires.national/2c50aedd-www.fox17.com.shtml
_______________________________________________ Dataloss Mailing List (dataloss () attrition org) http://attrition.org/dataloss Tenable Network Security offers data leakage and compliance monitoring solutions for large and small networks. Scan your network and monitor your traffic to find the data needing protection before it leaks out! http://www.tenablesecurity.com/products/compliance.shtml
Current thread:
- Montgomery Ward didn't tell consumers about credit card hack lyger (Jun 27)
- Re: Montgomery Ward didn't tell consumers about credit card hack Henry Brown (Jun 30)