CNN Money (http://money.cnn.com/2014/08/05/
Russian criminals steal 1.2 billion passwords
Answers
We accept credit card purchases online. We use a third party portal access provider. We do not store credit card data and never have for this very reason.
I only wish when they report on these breaches, they'd provide more details. What exactly was stolen and from whom? They've mentioned user names and passwords and suggested this could lead to access to one's bank accounts. Does that mean they got bank data? Online retail customer data? Credit card data?
Is the label "Russian" pertinent or simply revealing a biased view?
Not biased. The news story stated that the source of the hack was a "gang" based in a city there. This has been a commonality in many of the major identity thefts.
Of course, there is always the Nigerian 419 scam. :-)
Sometimes, we take PC too far.
The article on this that I read earlier said that they don't want to announce which sites had breaches until they fix the security flaw at the sites.
We're missing the object lesson here and the question.
* Have you taken another look at your security?
* Are you PCI compliant?
* Do you as a CFO/Controller/