Privacy Digest

News that can impact your privacy.
Login/Register
What is OpenID?
  • Log in using OpenID
  • Cancel OpenID login
  • Create new account
  • Request new password
Home Blogs MacRonin's blog
    • FAQ
    • Wishlists
    • Contact
    • Categories/RSS

Bookmark Us

Bookmark Privacy Digest 
Bookmark This Page 

Syndicate

Syndicate content
more

Advertisements

Tracking System
Tracking System
Private Detectives
Quality Security Services in California
Fleet Management
Hosting

Popular content

Last viewed:

  • Online Campaign 2008: A Phishing Bonanza?
  • My Genome, My Self - Steven Pinker Gets to the Bottom of his own Genetic Code
  • Judge Who Signed 'Torture Memo' Blasts DMCA Sentence
  • Supreme Court Asked to Weigh RIAA Legal Fee Flap
  • Kolodner praises health IT progress since 2004
  • Ohio University announces changes in file-sharing policies
  • Anonymous Hackers Shoot For Scientologists, Hit Dutch School Kids

tags in Topics

Activists Alert Anonymity Companies Congress Copyright Court (US) Databases Data Mining Editorial EFF Entertainment Exploits Fourth Amendment Government Hmmm ID Infrastructure Law Enforcement Laws Politics Privacy Remember Reports Rights Security Spin Zone Surveillance Telecommunications Tracking
more tags

View blog authority
Congressional Research
Broadcast Flag

Minnesota Gives PCI Rules a Legal Standing

Submitted by MacRonin on May 30, 2007 - 1:41am
  • Alert
  • Companies
  • Data Breach
  • Databases
  • Entertainment
  • Hmmm
  • Laws
  • Minnesota
  • Person Career
  • Privacy
  • Quotation
  • Rights
  • Security
  • Standards

Minnesota Gives PCI Rules a Legal Standing: Minnesota last week became the first state in the country to turn a core requirement of the Payment Card Industry (PCI) Data Security Standard into a law.

Under the state's Plastic Card Security Act, companies that suffer data breaches and are found to have been storing prohibited credit or debit card data on their systems will have to reimburse banks and credit unions for the costs of blocking and reissuing cards.

They could also be subject to lawsuits filed by individuals claiming to have been affected by violations of the law, which was signed by Gov. Tim Pawlenty after previously being approved by overwhelming margins in the Minnesota House and Senate. The law applies to all companies that process more than 20,000 card transactions annually.

The PCI standard, which was created by the major credit card companies, specifically prohibits retailers and other merchants from storing card data, such as the three- and four-digit verification codes on the back of cards and the full contents of a card's magnetic stripe.

Nevertheless, some retailers continue to keep card data on their systems, a practice that poses the greatest of any security risks to the information, said Mara Humphrey, director of governmental affairs at the Minnesota Credit Union Network in St. Paul. "PCI rules make it explicitly clear that you are not supposed to be storing it," Humphrey said, adding that the new state law formally reinforces that requirement.

The credit union association was a major supporter of the legislation. Humphrey said the group's interest in the measure was driven by the increasing costs faced by its nearly 160 members as a result of data breaches at merchants. "We've been hearing from credit unions who were very frustrated with the number of data breaches and the number of times they've had to reissue cards," she said. "They're frustrated that the onus has entirely been on them and not on the merchant." No Time in Texas

The Minnesota law is similar to one that was proposed in Texas this year. The Texas House of Representatives passed that bill by a vote of 139-0 early this month, but the proposal failed to make it through the Texas Senate because there wasn't enough time before today's scheduled ending of the state's regular biennial legislative session.

(Read Original Article - Via Computerworld Cybercrime/Hacking News.)

Bookmark/Search this post with:
  • Twitter Twitter
  • Digg Digg
  • StumbleUpon StumbleUpon
  • Technorati Technorati
  • del.icio.us del.icio.us
  • Facebook Facebook
  • Furl Furl
  • LinkedIn LinkedIn
  • Yahoo Yahoo
  • MacRonin's blog
  • Add new comment

Recent blog posts

  • In Bid to Sway Sales, Cameras Track Shoppers
  • Unprecedented 25-Year Sentence Sought for TJX Hacker
  • EFF Appeals Dismissal of Warrantless Wiretapping Case
  • Viacom Makes Its Case Against Yesterday's YouTube
  • Obama supports Senators draft plan to rework U.S. immigration policy - Includes National Biometric ID card for all.
  • Domain Names Can't Defend Themselves
  • Hacker Disables More Than 100 Cars Remotely
  • Judges Approves $9.5 Million Facebook ‘Beacon’ Accord
  • Hooking Up The Big Brother Machine... And Fighting It
  • Court: State Can Dump Non-Sex Offenders Into Registry
more

Performancing Metrics

Compilation © Copyright 1997-2010 Paul Hardwick, with Web Hosting provided by MacRonin.com.