Privacy Digest

News that can impact your privacy.
Login/Register
What is OpenID?
  • Log in using OpenID
  • Cancel OpenID login
  • Create new account
  • Request new password
Home Blogs MacRonin's blog
    • FAQ
    • Wishlists
    • Contact
    • Categories/RSS

Bookmark Us

Bookmark Privacy Digest 
Bookmark This Page 

Syndicate

Syndicate content
more

Advertisements

Tracking System
Tracking System
Private Detectives
Quality Security Services in California
Fleet Management
Hosting

Popular content

Last viewed:

  • Secret Document Calls Wikileaks ‘Threat’ to U.S. Army
  • The Beginning of the End of Data Retention
  • Google: Attack code more likely on Microsoft IIS
  • Unmarked Chopper Patrols New York City From Above
  • Smackdown: Consumer Privacy vs. Advertiser Revenue
  • Cryptome Suspected of Money Laundering or Worse (PayPal freezes their account)
  • EFF Posts Documents Detailing Law Enforcement Collection of Data From Social Media Sites

tags in Topics

Activists Alert Anonymity Companies Congress Copyright Court (US) Databases Data Mining Editorial EFF Entertainment Exploits Fourth Amendment Government Hmmm ID Infrastructure Law Enforcement Laws Politics Privacy Remember Reports Rights Security Spin Zone Surveillance Telecommunications Tracking
more tags

View blog authority
Congressional Research
Broadcast Flag

Visa and MasterCard Issue New Breach Warnings

Submitted by MacRonin on February 23, 2009 - 5:03pm
  • Alert
  • Companies
  • Data Breach
  • Databases
  • Finance
  • Hmmm
  • ID
  • Privacy
  • Security

Visa and MasterCard Issue New Breach Warnings: Via Threat Level

Visa and MasterCard have issued alerts warning of a security breach at another payment processor. The two credit and debit card issuers reportedly sent alerts earlier this month to banks and credit unions warning them that malicious software had been placed on the network of a second payment processor, according to an announcement posted by the Tuscaloosa VA Federal Credit Union. This would make it the second payment processor reporting a major breach in a month, following an announcement last month from Heartland Payment Systems that it had been hacked as well.

The breach involves stored transaction information for card-not-present transactions -- card transactions conducted over the phone or internet. The breach exposed card numbers and expiration dates, but not PINs or personally identifiable information stored on the card's magnetic stripe, such as the account holder's name. This limits the amount of fraud someone can conduct with the card since a fraudster would not be able to create a cloned card to use in person at a retailer and would have difficulty using it with an online merchant that asks for the security code printed on the back of the card or verification of the cardholder's billing address.

It's not known how many cards are at risk, but the announcement indicates that the malicious software was on the payment processor's system from February 2008 until last month.

The announcement says Visa and MasterCard are unwilling to name the processor because the processor hasn't gone public with the breach. Tuscaloosa Credit Union has not responded to a call for comment. Visa and MasterCard also have not returned calls for comment.

A second announcement on a web site for the Pennsylvania Credit Union Association says that Visa and MasterCard held a conference call with issuing banks on February 12 to discuss the new breach.

DataLossdb, a web site that tracks breach news, began reporting last week that it was receiving tips that a second payment processor had been breached. The tips vary on the size of the breach. Some indicated the breach was larger than the breach at Heartland Payment Systems. Others say it's a smaller breach.

In January, DataLoss had received tips about a breach at Heartland Payment Systems a week before the company acknowledged on January 20th that it had been hacked. More than a hundred financial institutions, and an unknown number of cardholders, have been affected by that breach.

Photo: Andres Rueda/Flickr

See also:

  • Card Processor Admits to Large Data Breach
  • Heartland Breach Affects 135 Banks and Credit Unions (So Far)

Read Original Article ( Via Threat Level. )

Bookmark/Search this post with:
  • Twitter Twitter
  • Digg Digg
  • StumbleUpon StumbleUpon
  • Technorati Technorati
  • del.icio.us del.icio.us
  • Facebook Facebook
  • Furl Furl
  • LinkedIn LinkedIn
  • Yahoo Yahoo
  • MacRonin's blog
  • Add new comment

Recent blog posts

  • In Bid to Sway Sales, Cameras Track Shoppers
  • Unprecedented 25-Year Sentence Sought for TJX Hacker
  • EFF Appeals Dismissal of Warrantless Wiretapping Case
  • Viacom Makes Its Case Against Yesterday's YouTube
  • Obama supports Senators draft plan to rework U.S. immigration policy - Includes National Biometric ID card for all.
  • Domain Names Can't Defend Themselves
  • Hacker Disables More Than 100 Cars Remotely
  • Judges Approves $9.5 Million Facebook ‘Beacon’ Accord
  • Hooking Up The Big Brother Machine... And Fighting It
  • Court: State Can Dump Non-Sex Offenders Into Registry
more

Performancing Metrics

Compilation © Copyright 1997-2010 Paul Hardwick, with Web Hosting provided by MacRonin.com.