Tuesday, March 18

OK TJX, the spotlight is officially off of you

Or at least we'll have another name to mention in the same sentence. Hannaford Brothers - looks like you're it. Sure, you've only exposed 10% of the number of accounts that TJX did, but it's still 4.2 million accounts. An interesting point was that the account information was stolen during the card authorization process. So, it sounds like network snooping. I guess we'll find out soon enough.

Benjamin Wright said...

Matt: We are learning that Hannaford was PCI compliant, and hacked in a novel, unexpected way. Legally speaking, we can't expect the PCI to keep pace with the criminals. Therefore the legal system (Federal Trade Commission) is wrong to punish merchants like Hannaford and TJX for credit card break-ins. --Ben