View Single Post
Old 01-19-2014, 12:35 PM  
Barry-xlovecam
It's 42
 
Industry Role:
Join Date: Jun 2010
Location: Global
Posts: 18,083
Quote:
Originally Posted by tony286 View Post
I dont understand why this payment systems and company info are on the internet not on a intranet. I got to figure its cost, well now it will cost them big time.
They are not supposed to be. You cannot retain consumer credit card data, i.e.; full credit card numbers unless it is on a SQL (data) server that only accepts local connections and in a security cage per PCI standards and VISA Net requirements.

So none of this makes sense. I think that this ''Russian hacker k0d3k1dde" is a diversion. This was probably an inside job or some major slop in compliance to PCI standards.

*** reading further a POS malware? Inside job too allowing Internet access to a POS system seems incredibly stupid.

Last edited by Barry-xlovecam; 01-19-2014 at 12:39 PM..
Barry-xlovecam is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote