Ethical Hacking

Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package.
Computer Forensics Training at InfoSec Institute

Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors.




Network Security FullDisclosure
[Top] [All Lists]

Re: [Full-disclosure] Re: Is the Bottom Line Impacted by Security Breach

Subject: Re: [Full-disclosure] Re: Is the Bottom Line Impacted by Security Breaches?
Date: Thu, 29 Sep 2005 02:29:36 -0700
Michael Holstein wrote:
I'm not so sure it's that simple... People were aware of it.

Um .. but *which* 40mil was it? Am I one of them? Hearing that 40mil random people got nicked is one thing .. me getting a letter from MBNA another.


Mastercard/Visa certianly know .. and so do some member banks, because some of them (in Australia, IIRC) replaced their cards proactively.

Their "logic" behind this is that their "zero liability due to fraud" clauses make it illogical to even care about compromised account numbers .. but anyone that's tried to contest a charge (because most don't let you do it online like AMEX does) .. can attest to what a major PITA that is (certified mail, etc.).

One would hear about such loss from publicly traded companies, similar to
the 4% loss in Q2/2005 due to the Wendy's chili case.

And hopefully .. once they go public .. they'll be held a bit more accountable.


~Mike.
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

This is old news and was reported over a month ago by many sites including http://www.creditrepaircombat.com/

As for the current card holders, it's my understanding that all cards that were disclosed were replaced so no customers out there who owned these cards have anything to worry about.

Is this still a big issue? You're damned right it is. These credit card companies still need to be held accountable for their lack of security which allowed this hack to begin with. If they spent a tenth that they do on advertising as they did on security, this kind of thing would never (or very unlikely) happen.

Cya,

Michael
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

<Prev in Thread] Current Thread [Next in Thread>