Current Issue

View Archives

View Flipbook

Table of Contents

Features

Mind on the ATM money

Industry Leader

Views

Payments: A very large space

Education

Street SmartsSM:
To certify or not to certify: That is the MLS question

What if my ISO tanks?

Ten myths muddling PCI mastery

Statement analysis for cave men

Getting wise to wireless security

Help desk quality check

New Products

No-brainer protection on smart cards

Fort Knox for merchant data

A new Vu of IP device management

Inspiration

What about you?

The Green Sheet Online Edition

May 5, 2007 • 07:05:02

ISOMetrics:
Restaurants most vulnerable to data breaches


The majority of cardholder data compromises occur at restaurants and retail locations, according to AmbironTrustWave.

The company, which provides information security and compliance management solutions, investigated nearly 220 of such incidences over the last two years. Its findings revealed the systems and card-acceptance environments most vulnerable to hacking.

Of the brick-and-mortar merchants whose systems were invaded, 95% were using payment applications that stored track data.

Storage of that data is a violation of Visa U.S.A's Payment Application Best Practices (PABP) and the Payment Card Industry (PCI) Data Security Standard.

AmbironTrustWave has found that three main deficiencies at restaurants often lead to data security breaches:

  1. Cardholder data is stored on an Internet-connected server. (The company considers all systems connected to the Internet high risk. Most compromise cases - 52% - involved DSL or cable modems; 31% had T1 lines and 17% used dial-up connections.)
  2. Vendor-supplied defaults are used for system passwords.
  3. POS systems and terminals do not follow the PABP guidelines.
AmbironTrustWave offers a white paper covering data card security issues and best practices for the restaurant industry. For more information, visit http://www.atwcorp.com.
ISOMetrics: Restaurants most vulnerable to data breaches
To see a hi-res pdf of the ISOMetrics page click here: ISOMetrics page
End of Story

Whether you want to upgrade your POS offerings, find a payment gateway partner, bone up on fintech regs or PCI requirements, find an upcoming trade show, read about faster payments, or discover the latest innovations in merchant acquiring, The Green Sheet is the resource for you. Since 1983, we've helped empower and connect payments professionals, starting with the merchant level salespeople who bring tailored payment acceptance and digital commerce tools, along with a host of other business services to merchants across the globe. The Green Sheet Inc. is also a proud affiliate of Bankcard Life, a premier community that provides industry-leading training and resources for payment professionals.

Notice to readers: These are archived articles. Contact information, links and other details may be out of date. We regret any inconvenience.

skyscraper ad