<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: 60 Minutes Report On TJX Raises New Charge</title>
	<atom:link href="http://storefrontbacktalk.com/securityfraud/60-minutes-report-on-tjx-raises-new-charge/feed/" rel="self" type="application/rss+xml" />
	<link>http://storefrontbacktalk.com/securityfraud/60-minutes-report-on-tjx-raises-new-charge/</link>
	<description>Techniques, Tools and Tirades about Retail Technology and E-Commerce</description>
	<lastBuildDate>Wed, 08 Feb 2012 16:02:40 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.2.1</generator>
	<item>
		<title>By: Barry Silverstein</title>
		<link>http://storefrontbacktalk.com/securityfraud/60-minutes-report-on-tjx-raises-new-charge/comment-page-1/#comment-20700</link>
		<dc:creator>Barry Silverstein</dc:creator>
		<pubDate>Thu, 06 Dec 2007 02:50:05 +0000</pubDate>
		<guid isPermaLink="false">http://www.storefrontbacktalk.com/securityfraud/60-minutes-report-on-tjx-raises-new-charge/#comment-20700</guid>
		<description>Utter poppycock ! The notion that VISA wants merchants to retain cardholder data is the most uninformed statement I have ever seen in payments circles. The damage to the reputation of the networks, merchants and casrd issuers is in the hundreds of millions.  The few measly dollars taken in fines pales in comparison..     I can not disagree more - anyone who works closely with  PCI or the card networks will take issue with this drivel !</description>
		<content:encoded><![CDATA[<p>Utter poppycock ! The notion that VISA wants merchants to retain cardholder data is the most uninformed statement I have ever seen in payments circles. The damage to the reputation of the networks, merchants and casrd issuers is in the hundreds of millions.  The few measly dollars taken in fines pales in comparison..     I can not disagree more &#8211; anyone who works closely with  PCI or the card networks will take issue with this drivel !</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Don Jackson</title>
		<link>http://storefrontbacktalk.com/securityfraud/60-minutes-report-on-tjx-raises-new-charge/comment-page-1/#comment-20611</link>
		<dc:creator>Don Jackson</dc:creator>
		<pubDate>Fri, 30 Nov 2007 20:41:25 +0000</pubDate>
		<guid isPermaLink="false">http://www.storefrontbacktalk.com/securityfraud/60-minutes-report-on-tjx-raises-new-charge/#comment-20611</guid>
		<description>As an IT compliance auditor, and hearing the remarks made about VISA, and seeing the type of information that 60 Minutes had gathered, I have to agree with Mr. Hogan, that type of information would not be privy to a merchant, that information is kept at the bank.  Also, my opinion on PCI is very low to begin with, although it is a start, I think that Congress should take PCI and make it an amendment to the GLBA, because it is true that VISA is making money if a merchant is non-compliant with PCI.  As for PCI, the objectives and control objectives are so vague that itâ€™s open to interpretation by only the VISA certified auditors that also must pay VISA to certify them to do PCI audits, yeap Iâ€™d say this is a huge money maker for VISA.</description>
		<content:encoded><![CDATA[<p>As an IT compliance auditor, and hearing the remarks made about VISA, and seeing the type of information that 60 Minutes had gathered, I have to agree with Mr. Hogan, that type of information would not be privy to a merchant, that information is kept at the bank.  Also, my opinion on PCI is very low to begin with, although it is a start, I think that Congress should take PCI and make it an amendment to the GLBA, because it is true that VISA is making money if a merchant is non-compliant with PCI.  As for PCI, the objectives and control objectives are so vague that itâ€™s open to interpretation by only the VISA certified auditors that also must pay VISA to certify them to do PCI audits, yeap Iâ€™d say this is a huge money maker for VISA.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Tyler Hannan</title>
		<link>http://storefrontbacktalk.com/securityfraud/60-minutes-report-on-tjx-raises-new-charge/comment-page-1/#comment-20512</link>
		<dc:creator>Tyler Hannan</dc:creator>
		<pubDate>Tue, 27 Nov 2007 05:21:32 +0000</pubDate>
		<guid isPermaLink="false">http://www.storefrontbacktalk.com/securityfraud/60-minutes-report-on-tjx-raises-new-charge/#comment-20512</guid>
		<description>Evan,

I agree with you completely.

In my blog on this topic, I mention that I was &quot;taken aback&quot; by the statement from Dave Hogan.  While I understand his organizations role in the ongoing battle between retailer and card association. . .it was very surprising to hear that he felt Visa, etc. were hoping solely to monetize data breach.

With that said, I&#039;m glad that the story of security at the physical retail location is being to be widely reported.  PA-DSS as an extension to PCI further underscores the importance this topic will continue to have in the future.

http://tylerhannan.blogspot.com/2007/11/60-minutes-heist-analysis.html</description>
		<content:encoded><![CDATA[<p>Evan,</p>
<p>I agree with you completely.</p>
<p>In my blog on this topic, I mention that I was &#8220;taken aback&#8221; by the statement from Dave Hogan.  While I understand his organizations role in the ongoing battle between retailer and card association. . .it was very surprising to hear that he felt Visa, etc. were hoping solely to monetize data breach.</p>
<p>With that said, I&#8217;m glad that the story of security at the physical retail location is being to be widely reported.  PA-DSS as an extension to PCI further underscores the importance this topic will continue to have in the future.</p>
<p><a href="http://tylerhannan.blogspot.com/2007/11/60-minutes-heist-analysis.html" rel="nofollow">http://tylerhannan.blogspot.com/2007/11/60-minutes-heist-analysis.html</a></p>
]]></content:encoded>
	</item>
</channel>
</rss>

