<?xml version="1.0" encoding="utf-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title><![CDATA[[SecurityRatty] tag: fulton]]></title>
    <link>http://securityratty.com/tag/fulton</link>
    <description></description>
    <pubDate>Fri, 01 Feb 2008 08:50:25 +0000</pubDate>
    <generator>iRatty Engine</generator>
    <docs>http://blogs.law.harvard.edu/tech/rss</docs>
    <item>
      <title><![CDATA[Customers of 14 Advance Auto Parts stores are victims of intrusion]]></title>
      <link>http://securityratty.com/article/24ce995cc05837ce18ecd03ab78c51ad</link>
      <guid>http://securityratty.com/article/24ce995cc05837ce18ecd03ab78c51ad</guid>
      <description><![CDATA[Technorati Tag: Security Breach

Date Reported
3/31/08

Organization
Advance Auto Parts, Inc

Headquartered in Roanoke, Va., Advance Auto Parts is the second-largest retailer of automotive aftermarket...]]></description>
      <content:encoded><![CDATA[Technorati Tag: <a href="http://technorati.com/tag/security+breach" rel="tag">Security Breach</a><br><br>
<img src="http://breachblog.com/images/95781-88451/advance.jpg" align="right" height="52" width="201">
<font size="2"><span style="font-weight: bold;">Date Reported: </span><br>3/31/08<br><br><span style="font-weight: bold;">Organization: </span><br><a href="http://www.advanceautoparts.com/">Advance Auto Parts, Inc.</a>*<br><br><font size="1">*Headquartered in Roanoke, Va., Advance Auto Parts is the second-largest retailer of automotive aftermarket parts, accessories, batteries, and maintenance items in the United States, based on store count and sales. As of December 29, 2007, the Company operated 3,261 stores in 40 states, Puerto Rico, and the Virgin Islands. The Company serves both the do-it-yourself and professional installer markets.</font><br><br><span style="font-weight: bold;">Contractor/Consultant/Branch:</span><br>None<br><br><span style="font-weight: bold;">Victims:</span><br>Customers that made purchases and one of 14 retail stores<br><br><span style="font-weight: bold;">Number Affected:</span><br>56,000<br><br><span style="font-weight: bold;">Types of Data:</span><br>"financial information" including "credit card, debit card and checking account information"<br><br><span style="font-weight: bold;">Breach Description:</span><br>"Advance Auto Parts Inc. (AAP) said data from 14 of its stores may have been affected by a network intrusion, potentially compromising financial information of up to 56,000 customers."<br><br><span style="font-weight: bold;">Reference URL:</span><br><a href="http://phx.corporate-ir.net/phoenix.zhtml?c=130560&amp;p=irol-newsArticle&amp;t=Regular&amp;id=1123808&amp;">Advance Auto Parts News Release</a> <br><a href="http://money.cnn.com/news/newsfeeds/articles/djf500/200803311739DOWJONESDJONLINE000764_FORTUNE5.htm">CNNMoney</a> <br><a href="http://www.forbes.com/reuters/feeds/reuters/2008/03/31/2008-03-31T235003Z_01_N31433790_RTRIDST_0_AUTOS-ADVANCEAUTO-UPDATE-2-NETWORK-INTRUS.html">Reuters via Forbes.com</a> <br><a href="http://www.eweek.com/c/a/Security/Auto-Parts-Retailer-Notifies-Customers-of-Network-Breach/">eWeek.com</a> <br><br><span style="font-weight: bold;">Report Credit:</span><br>Advance Auto Parts, Inc.<br><br><span style="font-weight: bold;">Response:</span><br>From the online sources cited above:<br><br>ROANOKE, Va.--(BUSINESS WIRE)--March 31, 2008--Advance Auto Parts, Inc. (NYSE:AAP), a leading automotive aftermarket retailer of parts, accessories and maintenance items, released information today regarding the Company becoming the victim of a network intrusion.<br><span style="font-style: italic;">[Evan] I don't think of the company as a "victim".&nbsp; I think of the people and possibly the banks that may have to reissue cards and reimburse the people as victims.</span><br><br>The investigation by Advance Auto Parts revealed that data from 14 of its stores may have been impacted, potentially compromising customer financial information of up to 56,000 customers.<br><br>The following 14 Advance Auto Parts stores were affected by this network intrusion:<br><br><span style="font-weight: bold;">Affected Store Address&nbsp;</span>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; <span style="font-weight: bold;">City&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; State</span><br>----------------------------------------------------------------------<br>2920 Martin Luther King Jr. Drive&nbsp; Atlanta&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; Georgia<br>----------------------------------------------------------------------<br>6100 Old National Highway&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; College Park&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; Georgia<br>----------------------------------------------------------------------<br>1354 Harrisburg Pike&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; Columbus&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; Ohio<br>----------------------------------------------------------------------<br>950 E Boston Street&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; Covington&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; Louisiana<br>----------------------------------------------------------------------<br>2055 South Locust St.&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; Canal Fulton&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; Ohio<br>----------------------------------------------------------------------<br>422 US Highway 80 W&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; Garden City&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; Georgia<br>----------------------------------------------------------------------<br>2414 Belle Chase Highway&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; Gretna&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; Louisiana<br>----------------------------------------------------------------------<br>1370 Ashland Road&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; Mansfield&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; Ohio<br>----------------------------------------------------------------------<br>6645 E. Shelby Dr.&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; Memphis&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; Tennessee<br>----------------------------------------------------------------------<br>179 Sgt Prentiss Drive&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; Natchez&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; Mississippi<br>----------------------------------------------------------------------<br>5185 Jimmy Carter Blvd.&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; Norcross&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; Georgia<br>----------------------------------------------------------------------<br>936 N. Gospel St.&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; Paoli&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; Indiana<br>----------------------------------------------------------------------<br>6300 W. Broad St.&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; Richmond&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; Virginia<br>----------------------------------------------------------------------<br>1802 Teall Ave.&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; Syracuse&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; New York<br>----------------------------------------------------------------------<br><span style="font-style: italic;">[Evan] I don't recognize any pattern in the store locations.&nbsp; I wonder if there is a pattern elsewhere.&nbsp; Why these stores, or is this just all that is known at this point?</span><br><br>Advance has notified its credit, debit and check processors.<br><br>As a precautionary measure, the Company has also started sending letters directly to the impacted customers whom it has been able to identify. Customers who purchased products in the 14 stores and who do not receive a letter can call the toll-free number listed below to determine if they have been impacted.<br><br>Advance is also working with the appropriate law enforcement officials who are conducting a criminal investigation.<br><br>The Company believes that the incident has been contained. However, the Company is continuing to investigate and has partnered with a leading global third party security expert to assist in the investigation. <br><br>In addition, Advance continually partners with leading experts to enhance the security of information technology systems.<br><span style="font-style: italic;">[Evan] Like who?&nbsp; What makes a person a leading expert?</span><br><br>"Safeguarding our customers' confidential financial information is extremely important to Advance Auto Parts, and we take this responsibility very seriously," said Darren Jackson, President and Chief Executive Officer.<br><span style="font-style: italic;">[Evan] I respect the fact that the CEO of the company addresses the public regarding this breach.&nbsp; It demonstrates that Mr. Jackson understands his role and ultimate responsibility for information security.</span><br><br>Advance has also established a special toll-free number with dedicated resources for potentially impacted customers who made purchases in the 14 stores to call to ask questions. The special toll-free number is 1-800-704-1154. Customer service representatives will be available to answer questions seven days a week from 8 am until 12 midnight EDT through May 31, 2008.<br><br>Advance is offering the affected customers a credit monitoring product from a national credit reporting agency at no cost for one year.<br><br>"We sincerely apologize for any inconvenience this attack on our network may cause. Advance Auto Parts has been dedicated for the past 75 years to earning customer trust and for providing Legendary Customer Service. We strive to serve each and every customer better than anyone else," said Jackson. "We truly appreciate the business of each Advance Auto Parts customer."<br><br><span style="font-weight: bold;">Commentary:</span><br>There are many many details missing from this news release.&nbsp; I expect more details to follow as people continue to ask questions and demand answers.&nbsp; A "network intrusion" is very general and implies an outsider attack.&nbsp; Why these 14 stores?<br><br>Stay tuned... <br><br><span style="font-weight: bold;">Past Breaches:</span><br>Unknown<br><br>
<script src="http://feeds.feedburner.com/%7Es/breachblog?i=http://breachblog.com/2008/03/31/advance.aspx" type="text/javascript" charset="utf-8"></script></font>]]></content:encoded>
      <pubDate>Mon, 31 Mar 2008 17:45:18 +0000</pubDate>
      <category domain="http://securityratty.com/tag/advance auto">advance auto</category>
      <category domain="http://securityratty.com/tag/advance">advance</category>
      <category domain="http://securityratty.com/tag/confidential financial information">confidential financial information</category>
      <category domain="http://securityratty.com/tag/information">information</category>
      <category domain="http://securityratty.com/tag/financial information">financial information</category>
      <category domain="http://securityratty.com/tag/stores">stores</category>
      <category domain="http://securityratty.com/tag/information security">information security</category>
      <category domain="http://securityratty.com/tag/customers">customers</category>
      <category domain="http://securityratty.com/tag/account information">account information</category>
      <source url="http://breachblog.com/2008/03/31/advance.aspx">Customers of 14 Advance Auto Parts stores are victims of intrusion</source>
    </item>
    <item>
      <title><![CDATA[NAP case study published]]></title>
      <link>http://securityratty.com/article/4cc36be06c1ef16b880817a9f0c8165d</link>
      <guid>http://securityratty.com/article/4cc36be06c1ef16b880817a9f0c8165d</guid>
      <description><![CDATA[Another new resource for you... I know from my time with customers in meetings and at events that NAP is something you're all very interested in. You're also being a bit cautious, waiting to see how...]]></description>
      <content:encoded><![CDATA[<p>Another new resource for you... I know from my time with customers in meetings and at events that NAP is something you're all very interested in. You're also being a bit cautious, waiting to see how the market matures, and hoping to learn how some customers have implemented it. Recently we published our first NAP case study. The government of Fulton County serves a population of nearly one million in northwest Georgia. Its IT department supports 5,000 employees in 400 buildings, dozens of agencies, airports, fire stations, police stations, courts, public-health clinics, and libraries. Its mixed IT infrastructure includes mainframes, clustered servers, workstations, desktop computers, multiple operating systems, dozens of vertical applications, and a sophisticated network encompassing multiple topologies and protocols. Having faced network disruptions in the past due to noncompliant computers, the county needed a new security solution. In response, it is deploying Windows Server® 2008 to take advantage of Network Access Protection (NAP). After an initial deployment, help-desk call volume decreased by 75 percent, for a projected annual savings of more than U.S.$150,000 in maintenance costs.</p> <p>Take a look at <a title="http://www.microsoft.com/casestudies/casestudy.aspx?casestudyid=4000001286" href="http://www.microsoft.com/casestudies/casestudy.aspx?casestudyid=4000001286">http://www.microsoft.com/casestudies/casestudy.aspx?casestudyid=4000001286</a>. It's a quick read. Glad to see they chose to use IPsec-based enforcement, it's my favorite :)</p><img src="http://blogs.technet.com/aggbug.aspx?PostID=2809291" width="1" height="1">]]></content:encoded>
      <pubDate>Fri, 01 Feb 2008 08:50:25 +0000</pubDate>
      <category domain="http://securityratty.com/tag/network">network</category>
      <category domain="http://securityratty.com/tag/network access protection">network access protection</category>
      <category domain="http://securityratty.com/tag/nap">nap</category>
      <category domain="http://securityratty.com/tag/fulton county serves">fulton county serves</category>
      <category domain="http://securityratty.com/tag/faced network disruptions">faced network disruptions</category>
      <category domain="http://securityratty.com/tag/county">county</category>
      <category domain="http://securityratty.com/tag/help-desk call volume">help-desk call volume</category>
      <category domain="http://securityratty.com/tag/infrastructure includes mainframes">infrastructure includes mainframes</category>
      <category domain="http://securityratty.com/tag/multiple topologies">multiple topologies</category>
      <source url="http://blogs.technet.com/steriley/archive/2008/02/01/nap-case-study-published.aspx">NAP case study published</source>
    </item>
  </channel>
</rss>
