Massive Credit Card Breach Was On Data That Wasn't Supposed To Exist

from the who-can-we-blame? dept

Late Friday afternoon, MasterCard released the news about how potentially 40 million credit card holders were at risk of having their data stolen, after discovering a hacker had placed a trojan on the computers of a credit card processing company. That was scary enough, but as the details continued to come out over the weekend, the situation just seemed to get worse and worse. Jeremy Wagstaff notes that the processor in question, CardSystems, apparently knew about the breach for nearly a month but claimed they didn't say anything because the FBI asked them not to -- a charge that the FBI denies. Then comes the best part. The NY Times reports that CardSystems wasn't even supposed to have this data. The company processes credit card transactions, but isn't supposed to keep records of the transactions, as per agreements it signed with Visa and MasterCard. However, these days, when it seems to be common practice to play fast and loose with other people's data, CardSystems hung onto all the data, for its own "research" purposes. It looks like those research purposes just caused plenty of problems for an awful lot of people.

4 Comments | Leave a Comment..


If you liked this post, you may also be interested in...
 

Reader Comments (rss)

(Flattened / Threaded)

  1.  

    What about Breached Babies?

    identicon
    dorpus, Jun 20th, 2005 @ 1:45am

    Will there be a massive international trade in aborted babies for human consumption? Stem Cell research, Chinese cuisine, you name it.

    http://www.tcnweb.ne.jp/~perfect/china.htm

    reply to this | link to this | view in thread ]

  2.  

    Re: What about Breached Babies?

    identicon
    anti-dorphus, Jun 20th, 2005 @ 2:15am

    do you need some body parts dorphus - like a BRAIN ?

    reply to this | link to this | view in thread ]

  3.  

    Securiy by volutary compliance

    identicon
    Precision Blogger, Jun 20th, 2005 @ 8:05am

    What's REALLY interesting is that the banks make security policy and then trust the processing companies to follow it. These records might not have existed if the the banks had been actively auditing the procesing companies instead of telling them what they were supposed to do and leaving it at that.
    - Precision Blogger

    reply to this | link to this | view in thread ]

  4.  

    Credit Cards

    identicon
    Nikhil Agarwal, Mar 18th, 2009 @ 1:40am

    I think one should choose a reliable credit card company that gives you maximum benefits. Get the best credit card deals online for Kotak Credit Cards. It’s time to get the best rewards from your credit card. Apply for free online credit cards available offered by http://www.kotakcards.com

    reply to this | link to this | view in thread ]


Add Your Comment

Have a Techdirt Account? Sign in now. Want one? Register here
Get Techdirt’s Daily Email
Save me a cookie
  • Note: A CRLF will be replaced by a break tag (<br>), all other allowable HTML will remain intact
  • Allowed HTML Tags: <b> <i> <a> <em> <br> <strong> <blockquote> <hr> <tt>


A word from our Sponsors...
Follow Techdirt
Flattr rss rss
From the Techdirt Archive...
A word from our Sponsors...

Close

Email This