Username: Save?
Password:
Home Forum Links Search Login Register*
    News: Welcome to the TechnoWorldInc! Community!
Recent Updates
[May 13, 2025, 02:04:25 PM]

[May 13, 2025, 02:04:25 PM]

[May 13, 2025, 02:04:25 PM]

[May 13, 2025, 02:04:25 PM]

[April 12, 2025, 01:54:20 PM]

[April 12, 2025, 01:54:20 PM]

[April 12, 2025, 01:54:20 PM]

[April 12, 2025, 01:54:20 PM]

[March 12, 2025, 03:05:30 PM]

[March 12, 2025, 03:05:30 PM]

[March 12, 2025, 03:05:30 PM]

[March 12, 2025, 03:05:30 PM]

[January 03, 2025, 03:29:12 PM]
Subscriptions
Get Latest Tech Updates For Free!
Resources
   Travelikers
   Funistan
   PrettyGalz
   Techlap
   FreeThemes
   Videsta
   Glamistan
   BachatMela
   GlamGalz
   Techzug
   Vidsage
   Funzug
   WorldHostInc
   Funfani
   FilmyMama
   Uploaded.Tech
   Netens
   Funotic
   FreeJobsInc
   FilesPark
Participate in the fastest growing Technical Encyclopedia! This website is 100% Free. Please register or login using the login box above if you have already registered. You will need to be logged in to reply, make new topics and to access all the areas. Registration is free! Click Here To Register.
+ Techno World Inc - The Best Technical Encyclopedia Online! » Forum » THE TECHNO CLUB [ TECHNOWORLDINC.COM ] » Techno News
 Foregenix data discovery project reveals unprotected sensitive customer cardhold
Pages: [1]   Go Down
  Print  
Author Topic: Foregenix data discovery project reveals unprotected sensitive customer cardhold  (Read 551 times)
RealWire
TWI Hero
**********



Karma: 0
Offline Offline

Posts: 18530


View Profile Email


Digital forensics and incident response specialist, Foregenix, has announced the results of its data discovery projects conducted across 40 companies over a five month period spanning January to May, 2011. The FScout data discovery tool from Foregenix found over 100 million unique PANS (primary account numbers) residing on the participating companies’ systems. It was also able to identify over 1,000 instances of Track 1 data and over three million instances of Track 2 data – the full magnetic strip on payment cards, allowing cloning of the cards if stolen. The confidential trial was conducted with companies of varying sizes from a number of industries including acquiring banks, retailers, hospitality and ecommerce companies.

The results confirmed that most companies are unaware of the sensitive cardholder data that is lying dormant on their systems. Identifying this legacy data is crucial, as is the means of handling it after discovery. Companies must retain and protect only what is absolutely necessary for business, and delete everything else in a secure fashion; specifically, Track 2 data should never be stored after a transaction has been authorised. Identifying and protecting/deleting this data effectively reduces the cost and complexity of achieving and maintaining PCI DSS compliance and reduces the risk of cardholder data compromise.

“Our trial showed that many merchants have no visibility over the unprotected data that they are storing,” says Benjamin Hosack, director of Foregenix. “Data Discovery tools assist businesses in identifying unprotected legacy cardholder data, and through regular monitoring provides them with assurance that they are not exposed to unnecessary risk. Acting as an early warning, these tools will alert businesses as soon as unprotected data is identified in business systems. Data leakage could be from mis-configurations of payment systems, changed business processes or malicious behaviour; all of which need to be managed efficiently to reduce risk.”

While many large merchants are working towards full PCI DSS compliance, Level 4, or smaller merchants, are still being compromised frequently. In fact, 96% of data compromises in 2010 took place in this sector.

“The target remains the same for attacks. Cybercriminals want cardholder data,” continues Hosack. “We have seen businesses of all types falling victim to attack through a variety of methods. With the majority of attackers identifying unprotected cardholder data companies need to act now to protect their businesses and customers.”

Logged

Pages: [1]   Go Up
  Print  
 
Jump to:  

Copyright © 2006-2023 TechnoWorldInc.com. All Rights Reserved. Privacy Policy | Disclaimer
Page created in 0.149 seconds with 23 queries.