Exploits
Software exploits that can comprimise your privacy and security

 


















Subscribe to "Exploits" in Radio UserLand.

Click to see the XML version of this web page.

Click here to send an email to the editor of this weblog.

 

 

  Friday, February 23, 2007


Mass. Bill Would Make Retailers Pay for Data Breaches.

Lawmakers in Massachusetts are poised to consider legislation that would force retailers who suffer data breaches to cover the costs associated with any fraud-related losses by their customers, according to a story in today's Wall Street Journal (link is by subscription only).

The bill, sponsored by Rep. Michael A. Costello (D), would make any company (retailer, bank or data processor) financially liable if it is the operator of the system that is hacked. The bill doesn't cover other types of credit-card fraud, such as those perpetrated by means of a lost or stolen card."

The legislation also "would mandate that companies whose security systems are breached assume full financial responsibility for any fraud-related losses, costs associated with the canceling and reissuing of cards, and -- in cases of identity theft -- the freezing of accounts and credit information. The bill would apply to any company doing business in Massachusetts, wherever it may be based."

While this is a state measure, it's hard to ignore the nationwide impact of the California data breach notification law that took effect in 2003. It seems like everyone is getting data breach or loss notices these days (my wife and I received one last week). Now, some 35 states have laws on the books that mimic the California law.

You can bet that a ton of businesses will be keeping a close eye on the debate surrounding this Massachusetts bill. It's worth noting that the intent behind this bill is very similar to a legislative idea sketched out earlier this year by House Financial Services Committee Chairman Barney Frank, a Democrat who just happens to hail from Massachusetts.

[Security Fix]
12:16:34 PM    

Critical IE Graphics Flaw Resurfaces. Plus: More Office holes, and a major Adobe problem that affects all browsers. [PC World: Latest Technology News]
12:06:50 PM    

Famed ID Thief to Speak at Security Event. Frank Abagnale, subject of the film 'Catch Me If You Can', will keynote the London RSA Conference in October. [PC World: Latest Technology News]
12:00:45 PM    

Pharming Attack Targeted Bank Customers Worldwide. A pharming attack that targeted online banking customers in the U.S., Europe and Asia-Pacific has been shut down. [PC World: Latest Technology News]
11:58:49 AM    


Click here to visit the Radio UserLand website. © Copyright 2007 Paul Hardwick.
Last update: 3/4/07; 3:49:12 AM.

February 2007
Sun Mon Tue Wed Thu Fri Sat
        1 2 3
4 5 6 7 8 9 10
11 12 13 14 15 16 17
18 19 20 21 22 23 24
25 26 27 28      
Jan   Mar