BreachExchange mailing list archives

Personal data breaches cease to slow down


From: Audrey McNeil <audrey () riskbasedsecurity com>
Date: Mon, 8 Sep 2014 18:52:51 -0600

http://www.theindychannel.com/financial-fitness/expert-get-ahead-of-potential-credit-fraud


A little more than a year ago, discount hardware store Harbor Freight Tools
had what was considered the largest data breach in 2013.

But data breaches have ceased to slow down and continue to impact more and
more customers of even larger retail outlets.

Michael’s Stores Inc., P.F. Chang’s, Neiman Marcus, Supervalu and Sally
Beauty have all been hit.

Even thrift-store operator Goodwill has been hit by a data breach.

“I think the reason why you’re seeing more of them is this is where the
money is,” said Adam Levin, the co-founder and chairman of Credit.com.
“Instead of trying to get into people lives one computer at a time, when
you hit some of these massive big box stores like Home Depot, like Neiman
Marcus, like Target, you have an opportunity to pick off millions of credit
cards and debit cards.

Target stood as the largest data breach in the last 12 months with about 40
million credit cards compromised following Black Friday shopping. Some now
fear Home Depot’s possible data breach could be worse.

TJX Cos Inc., which runs T.J. Maxx and Marshalls had the largest-known
breach in 2007 with more than 90 million credit card numbers were stolen.

Levin said people are having more and more difficulty avoiding getting
tangled up in some sort of credit fraud.

“It’s now becoming a dead certainty,” Levin said. “The problem is you can
do everything right, but if you’re on the wrong database at the wrong
moment and the wrong person gains unauthorized access, you have a problem.
You’re going to get compromised.”

Still, people can take some steps to limit the pain.

First, Levin said people should take a peek at their credit card and bank
accounts daily. Financial institutions sometimes don’t catch every
fraudulent transaction, especially fraud within the same zip code as the
card owner.

But individuals know where they shop and when they use ATMs, and so they
can catch the problem early before too much damage is done.

People also should make periodic changes to their pin numbers and avoid
using passwords that relate to birthdays, anniversaries or other items that
can be gleaned from social media, he said.

Levin also said he also could see a shift toward people using credit cards
instead of debit cards, which give a hacker information that could drain a
victim’s bank account.

Credit cards often can be shut off relatively quickly by financial
institutions with little risk on the cardholder. But a victim of a debit
card hack could have more problems getting their money back, he said.

To combat these problems, Levin said financial institutions are often
giving free ways to track to make sure fraud is not occurring.

“They deputized you,” he said. “You’re watching as much as they’re
watching.”
_______________________________________________
Dataloss Mailing List (dataloss () datalossdb org)
Archived at http://seclists.org/dataloss/
Unsubscribe at http://lists.osvdb.org/mailman/listinfo/dataloss
For inquiries regarding use or licensing of data, e-mail
        sales () riskbasedsecurity com 

Supporters:

Risk Based Security (http://www.riskbasedsecurity.com/)
YourCISO is an affordable SaaS solution that provides a comprehensive information security program that ensures focus 
on the right security.  If you need security help or want to provide real risk reduction for your clients contact us!

Current thread: