<?xml version="1.0" encoding="utf-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title><![CDATA[[SecurityRatty] tag: payment]]></title>
    <link>http://securityratty.com/tag/payment</link>
    <description></description>
    <pubDate>Wed, 17 Sep 2008 20:00:00 +0000</pubDate>
    <generator>iRatty Engine</generator>
    <docs>http://blogs.law.harvard.edu/tech/rss</docs>
    <item>
      <title><![CDATA[Credit Card Protections Abroad]]></title>
      <link>http://securityratty.com/article/15312f4bced87019b30fb55ceb94fd45</link>
      <guid>http://securityratty.com/article/15312f4bced87019b30fb55ceb94fd45</guid>
      <description><![CDATA[When you pay by credit card in a restaurant, have you ever wondered what they do with your card when they take it from you to collect payment? Although you may trust the restaurant, theres still the...]]></description>
      <content:encoded><![CDATA[<div class="entry-body">
<div>
<div class="item-body">
<div>
<div>
<p>When you pay by credit card in a restaurant, have you ever wondered what they do with your card when they take it from you to collect payment? Although you may trust the restaurant, there&#8217;s still the possibility the waiters can write your credit card and verification number down and sell the info later.</p>
<p>Apparently in the UK and other European areas, this is not the case. <a rel="nofollow" target="_blank" href="https://365.rsaconference.com/blogs/ira_winkler/2008/10/09/the-us-has-a-lot-to-learn">Ira Winkler </a>at the RSA blog recently wrote about an experience traveling and noticing other credit card customs and security -</p>
<blockquote><p>If you are at a restaurant and pay with a credit card, they bring over a system and swipe your card in front of you. Additionally, all the credit card readers I came in contact with assumed that credit cards were smart cards with readable chips. This adds another level of security, and PINs were required as well. When I was in The Netherlands a few months ago, I couldn&#8217;t even use my American credit card on the ticket machines for their train system.</p>
<p style="padding:0px;min-height:8pt;height:8pt;">
<p>With all of the credit card fraud going on, I wonder when the US will finally get its act together and follow the European credit card security measures.</p></blockquote>
<p>Read the full article<a rel="nofollow" target="_blank" href="https://365.rsaconference.com/blogs/ira_winkler/2008/10/09/the-us-has-a-lot-to-learn"> here.</a></div>
</div>
</div>
</div>
</div>]]></content:encoded>
      <pubDate>Fri, 10 Oct 2008 06:59:08 +0000</pubDate>
      <category domain="http://securityratty.com/tag/credit card">credit card</category>
      <category domain="http://securityratty.com/tag/credit card customs">credit card customs</category>
      <category domain="http://securityratty.com/tag/american credit card">american credit card</category>
      <category domain="http://securityratty.com/tag/card">card</category>
      <category domain="http://securityratty.com/tag/credit card fraud">credit card fraud</category>
      <category domain="http://securityratty.com/tag/credit card readers">credit card readers</category>
      <category domain="http://securityratty.com/tag/rsa blog recently">rsa blog recently</category>
      <category domain="http://securityratty.com/tag/restaurant">restaurant</category>
      <category domain="http://securityratty.com/tag/train system">train system</category>
      <source url="http://feeds.feedburner.com/~r/itsecurity/~3/417034108/">Credit Card Protections Abroad</source>
    </item>
    <item>
      <title><![CDATA["Catch Me, Yes YOU Can": Realized Threats at the Corner Store]]></title>
      <link>http://securityratty.com/article/cfe4e6883d78190bc8fc3d36305bf27f</link>
      <guid>http://securityratty.com/article/cfe4e6883d78190bc8fc3d36305bf27f</guid>
      <description><![CDATA[just returned from the Payment Card Industry's 2008 Members Council Meeting in Orlando, Florida. We had a blast despite the mood being somewhat dampened as a result of the uncertainty of the global...]]></description>
      <content:encoded><![CDATA[ just returned from the <a href="https://www.pcisecuritystandards.org/pdfs/pr_080930_PCIDSSv1-2.pdf" target="_blank">Payment Card Industry's</a> 2008 Members Council Meeting in Orlando, Florida.  We had a blast despite the mood being somewhat dampened as a result of the uncertainty of the global financial markets (heartfelt thanks to those wise souls who've been living outside of their means and taking undue personal and commercial financial risk...).  Anyhew, I met so many interesting people from both merchants and from the card brands like Visa, MasterCard, American Express, Discover & JCB International Co., Ltd.]]></content:encoded>
      <pubDate>Thu, 09 Oct 2008 20:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/payment card industry">payment card industry</category>
      <category domain="http://securityratty.com/tag/commercial financial risk">commercial financial risk</category>
      <category domain="http://securityratty.com/tag/global financial markets">global financial markets</category>
      <category domain="http://securityratty.com/tag/wise souls">wise souls</category>
      <category domain="http://securityratty.com/tag/card brands">card brands</category>
      <category domain="http://securityratty.com/tag/american express">american express</category>
      <category domain="http://securityratty.com/tag/jcb international">jcb international</category>
      <category domain="http://securityratty.com/tag/undue personal">undue personal</category>
      <category domain="http://securityratty.com/tag/orlando">orlando</category>
      <source url="http://www.rsa.com/blog/blog_entry.aspx?id=1364">"Catch Me, Yes YOU Can": Realized Threats at the Corner Store</source>
    </item>
    <item>
      <title><![CDATA[A Diverse Portfolio of Fake Security Software - Part Eight]]></title>
      <link>http://securityratty.com/article/8679b7cba84c40cf05ac706ffff136e1</link>
      <guid>http://securityratty.com/article/8679b7cba84c40cf05ac706ffff136e1</guid>
      <description><![CDATA[In the spirit of &quot; taking a bite out of cybercrime &quot;, here are the latest fake security software domains, typosquatted and already acquiring traffic through a dozen of malware campaigns redirecting to...]]></description>
      <content:encoded><![CDATA[<div style="text-align: left;"></div><div class="separator" style="clear: both; text-align: center;"></div><a href="http://3.bp.blogspot.com/_wICHhTiQmrA/SOrE3tf04BI/AAAAAAAACQQ/kcG-puPQ2zs/s1600-h/fake_security_software_october.PNG" imageanchor="1" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em;"><img border="0" src="http://3.bp.blogspot.com/_wICHhTiQmrA/SOrE3tf04BI/AAAAAAAACQQ/uqK0Of48ME4/s200-R/fake_security_software_october.PNG" /></a>In the spirit of "<a href="http://bp3.blogger.com/_wICHhTiQmrA/R3WKqj8-MnI/AAAAAAAABSw/9FrQmDwhpb4/s1600-h/mcgruff_cybercrime.jpg">taking a bite out of cybercrime</a>", here are the latest fake security software domains, typosquatted and already acquiring traffic through a dozen of malware campaigns redirecting to most of them :<br />
<br />
<b>antivirus-scanner-online.com</b> (67.205.75.14)<br />
<br />
<b>archivepacker.com</b> (78.157.142.111)<br />
<b>winpacker.com<br />
xh-codec.net</b><br />
<br />
<b>securedownloadcenter.com</b> (89.18.189.44)<br />
<b>winupdates-server.com<br />
browserssecuritypage.com<br />
megatradetds0.com</b><br />
<br />
<div style="text-align: left;"></div><div class="separator" style="clear: both; text-align: center;"></div><div class="separator" style="clear: both; text-align: left;"><a href="http://3.bp.blogspot.com/_wICHhTiQmrA/SOrFf0onJVI/AAAAAAAACQY/L3D_vlP23hU/s1600-h/fake_security_software_october1.PNG" imageanchor="1" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em;"><img border="0" src="http://3.bp.blogspot.com/_wICHhTiQmrA/SOrFf0onJVI/AAAAAAAACQY/omtYi_kxTos/s200-R/fake_security_software_october1.PNG" /></a></div><b>quickscanpc.com</b> (78.159.118.144)<br />
<b>clickchecker6.com<br />
</b><br />
<b>gensoftdownload.com</b> (91.203.93.25) <br />
<br />
<b>online-av-scan2008.com</b> (66.232.105.232)<br />
<b>anothersoftportal09.com</b><br />
<b>bigfreesoftarchive.com</b><br />
<b>celebs-on-video-08.com</b><br />
<b>celebs-on-video-2008.com</b><br />
<b>cleansoftportal2009.com</b><br />
<b>hot-p0rntube.com</b><br />
<b>hot-porn-tube-2008.com</b><br />
<b>hot-porn-tube2008.com</b><br />
<b>hot-porn-tube2009.com</b><br />
<b>justdomain08.com</b><br />
<b>new-porntube-2008.com</b><br />
<b>online-av-scan2008.com</b><br />
<div style="text-align: left;"></div><div class="separator" style="clear: both; text-align: center;"></div><a href="http://4.bp.blogspot.com/_wICHhTiQmrA/SOrGSntRZ4I/AAAAAAAACQg/iIu0w9kigNc/s1600-h/fake_security_software_october2.PNG" imageanchor="1" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em;"><img border="0" src="http://4.bp.blogspot.com/_wICHhTiQmrA/SOrGSntRZ4I/AAAAAAAACQg/AIs6ZzzeXmI/s200-R/fake_security_software_october2.PNG" /></a><b>s0ftvvarep0rtal.com<br />
s0ftvvareportal.com<br />
s0ftvvareportal08.com<br />
s0ftwarep0rtal08.com<br />
softportalforfun.com<br />
softportalforfun08.com<br />
softportalforfun2008.com<br />
softvvareportal.com<br />
softvvareportal08.com<br />
softvvareportal2008.com<br />
trustedsoftportal06.com<br />
trustedsoftportal2008.com</b><br />
<br />
<div style="text-align: left;"></div><div class="separator" style="clear: both; text-align: center;"></div><a href="http://4.bp.blogspot.com/_wICHhTiQmrA/SOrG2J5DAiI/AAAAAAAACQo/PHQM9BSuc6A/s1600-h/fake_security_software_october3.PNG" imageanchor="1" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em;"><img border="0" src="http://4.bp.blogspot.com/_wICHhTiQmrA/SOrG2J5DAiI/AAAAAAAACQo/emqLynBbpqo/s200-R/fake_security_software_october3.PNG" /></a><b>antivirus-online-08.com</b> (89.187.48.155; 218.106.90.227)<br />
<b>anti-virus-xp.com<br />
anti-virus-xp.net<br />
anti-virusxp2008.net<br />
antimalware09.com<br />
antivirxp.net<br />
av-xp08.net<br />
av-xp2008.com<br />
av-xp2008.net<br />
avx08.net<br />
axp2008.com<br />
e-antiviruspro.com<br />
eantivirus-payment.com<br />
ekerberos.com<br />
online-security-systems.com<br />
xpprotector.com<br />
youpornzztube.com</b><br />
<br />
<div style="text-align: left;"></div><div class="separator" style="clear: both; text-align: center;"></div><a href="http://3.bp.blogspot.com/_wICHhTiQmrA/SOrHASFNdfI/AAAAAAAACQw/qIj8zB5yVAY/s1600-h/fake_software_october.png" imageanchor="1" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em;"><img border="0" src="http://3.bp.blogspot.com/_wICHhTiQmrA/SOrHASFNdfI/AAAAAAAACQw/ARL4Yobkx74/s200-R/fake_software_october.png" /></a><b>sp-preventer.com</b> (92.241.163.32)<br />
<b>spypreventers.com</b><br />
<br />
<b>u-a-v-2008.com</b> (92.241.163.31)<br />
<b>uav2008.com</b><br />
<br />
<b>power-avcc.com</b> (92.62.101.57)<br />
<b>power-avc.com<br />
pvrantivirus.com</b><br />
<br />
<b>m-s-a-v-c.com</b> (92.62.101.55)<br />
<b>ms-avcc.com<br />
ms-avc.com</b><br />
<br />
<b>wav2008.com</b> (92.241.163.30)<br />
<b>wiav2009.com</b><br />
<b>win-av.com<br />
windows-av.com<br />
windowsav.com&nbsp;</b><br />
<br />
You know the drill.<b>&nbsp;</b><br />
<br />
<b>Related posts:</b><br />
<a href="http://ddanchev.blogspot.com/2008/09/diverse-portfolio-of-fake-security_30.html">A Diverse Portfolio of Fake Security Software - Part Seven</a><br />
<a href="http://ddanchev.blogspot.com/2008/09/diverse-portfolio-of-fake-security_24.html">A Diverse Portfolio of Fake Security Software - Part Six</a><br />
<a href="http://ddanchev.blogspot.com/2008/09/diverse-portfolio-of-fake-security.html">A  Diverse Portfolio of Fake Security Software - Part Five</a> <br />
<a href="http://ddanchev.blogspot.com/2008/08/diverse-portfolio-of-fake-security_25.html">A  Diverse Portfolio of Fake Security Software - Part Four</a><br />
<a href="http://ddanchev.blogspot.com/2008/08/diverse-portfolio-of-fake-security_20.html">A  Diverse Portfolio of Fake Security Software - Part Three</a><b> </b><br />
<a href="http://ddanchev.blogspot.com/2008/08/diverse-portfolio-of-fake-security.html">A  Diverse Portfolio of Fake Security Software - Part Two</a><br />
<a href="http://ddanchev.blogspot.com/2007/12/diverse-portfolio-of-fake-security.html">Diverse  Portfolio of Fake Security Software</a> <b></b><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=1QWvM"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=1QWvM" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=r6QfM"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=r6QfM" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=Q76lm"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=Q76lm" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=JZP6m"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=JZP6m" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=YNGWM"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=YNGWM" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=MxVcM"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=MxVcM" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=h2Vfm"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=h2Vfm" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/DanchoDanchevOnSecurityAndNewMedia/~4/413758015" height="1" width="1"/>]]></content:encoded>
      <pubDate>Tue, 07 Oct 2008 03:21:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/fake security software">fake security software</category>
      <category domain="http://securityratty.com/tag/diverse portfolio">diverse portfolio</category>
      <category domain="http://securityratty.com/tag/net">net</category>
      <category domain="http://securityratty.com/tag/malware campaigns">malware campaigns</category>
      <category domain="http://securityratty.com/tag/av-xp2008">av-xp2008</category>
      <category domain="http://securityratty.com/tag/anti-virus-xp">anti-virus-xp</category>
      <category domain="http://securityratty.com/tag/antimalware09">antimalware09</category>
      <category domain="http://securityratty.com/tag/uav2008">uav2008</category>
      <category domain="http://securityratty.com/tag/axp2008">axp2008</category>
      <source url="http://feeds.feedburner.com/~r/DanchoDanchevOnSecurityAndNewMedia/~3/413758015/diverse-portfolio-of-fake-security.html">A Diverse Portfolio of Fake Security Software - Part Eight</source>
    </item>
    <item>
      <title><![CDATA[Credit-card security standard issued after much debate ]]></title>
      <link>http://securityratty.com/article/01216534647f9456d3a180c9517e56cb</link>
      <guid>http://securityratty.com/article/01216534647f9456d3a180c9517e56cb</guid>
      <description><![CDATA[The Payment Card Industry Security Standards Council, the organization that sets technical requirements for processing credit- and debit-cards, today issued revised security rules, while also...]]></description>
      <content:encoded><![CDATA[The Payment Card Industry Security Standards Council, the organization that sets technical requirements for processing credit- and debit-cards, today issued revised security rules, while also indicating next year it will focus on new guidelines for end-to-end encryption, payment machines and virtualization.]]></content:encoded>
      <pubDate>Tue, 30 Sep 2008 20:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/sets technical requirements">sets technical requirements</category>
      <category domain="http://securityratty.com/tag/security rules">security rules</category>
      <category domain="http://securityratty.com/tag/payment machines">payment machines</category>
      <category domain="http://securityratty.com/tag/end-to-end encryption">end-to-end encryption</category>
      <category domain="http://securityratty.com/tag/credit-">credit-</category>
      <category domain="http://securityratty.com/tag/debit-cards">debit-cards</category>
      <category domain="http://securityratty.com/tag/focus">focus</category>
      <category domain="http://securityratty.com/tag/virtualization">virtualization</category>
      <category domain="http://securityratty.com/tag/guidelines">guidelines</category>
      <source url="http://www.networkworld.com/news/2008/100108-pci-credit-card.html?fsrc=rss-security">Credit-card security standard issued after much debate </source>
    </item>
    <item>
      <title><![CDATA[Hype Alert: Internet Shopping Carts Are Secure]]></title>
      <link>http://securityratty.com/article/6f0706e64d78d354492017803497a079</link>
      <guid>http://securityratty.com/article/6f0706e64d78d354492017803497a079</guid>
      <description><![CDATA[My blog reader fed me a nugget today that set off my hype monitor, specifically a post entitled Internet Shopping Carts are Secure
OMG...really
To be fair, I realize the author is speaking from the...]]></description>
      <content:encoded><![CDATA[My blog reader fed me a nugget today that set off my hype monitor, specifically a post entitled <a href="http://hubpages.com/hub/Internet-Shopping-Carts-Are-Secure" taget="_blank">Internet Shopping Carts are Secure</a>. <br />OMG...really?<br />To be fair, I realize the author is speaking from the eCommerce perspective, rather than that of an information security practitioner, but here's where the trouble begins:<br /><span style="font-style:italic;">"Shopping cart service providers have developed secure ecommerce shopping cart solutions for any business owner looking to enhance their current online store, or create a new one. Some ecommerce shopping cart solution providers are even receiving PABP (Payment Application Best Practice) certification which supports PCI compliance requirements for all businesses accepting credit card payments online."</span><br />This may be true in part, but it is by no means an all-inclusive claim. Shopping carts continue to be sieve-like, even when apparently reviewed per <a href="https://www.pcisecuritystandards.org/security_standards/pci_dss.shtml" target="_blank">PCI</a> standards.<br />Allow me to elaborate.<br />We'll kick off our hype eliminating effort with a simple Google dork: <a href="http://www.google.com/search?hl=en&q=inurl%3A%22cart.cfm%22&btnG=Search" target="_blank"{>inurl:"cart.cfm"</a> (picking on ColdFusion again, but man, they make it easy)<br /><a href="http://www.gmpartsdirect.com/cart.cfm" target="_blank">GM Parts Direct: Your Shopping Cart</a> jumped right out at me for a number of reasons.<br />First, I sensed XSS vulns lurking like a Geiger counter senses radiation. Sound <a href="http://www.ringelkater.de/Sounds/2geraeusche_gegenst/geigerzaehler.wav" target="_blank">effect</a> for edification. :-)<br />Second, the page contained one of the growing number of aforementioned conversion-driving website <a href="http://sealserver.trustwave.com/cert.php?customerId=w6ordzctHpqOVGcB1cmBsViTpDGC2k&size=105x54&style=normal&language=en" target="_blank">security</a> seals. <br /><br /><a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_kVOWaY1TAF0/SN1tYvapkkI/AAAAAAAAADg/6k1ncKqufL4/s1600-h/GMparts.png" target="_blank"><img style="cursor:pointer; cursor:hand;" src="http://3.bp.blogspot.com/_kVOWaY1TAF0/SN1tYvapkkI/AAAAAAAAADg/6k1ncKqufL4/s320/GMparts.png" border="0" alt=""id="BLOGGER_PHOTO_ID_5250473012396397122" /></a><br /><br />Tick, tick, click...the Gieger counter is getting louder. <br />Trustwave claims that the site operator "is enrolled in Trustwave's Trusted Commerce™ program to validate compliance with the Payment Card Industry Data Security Standard (PCI DSS) mandated by all the major credit card associations including: American Express, Diners Club, Discover, JCB, MasterCard Worldwide, Visa, Inc. and Visa Europe."<br />Methinks that <a href="https://www.trustwave.com/" target="_blank">Trustwave's</a> Trusted Commerce program is missing a few fundamental security checks. Remember, XSS in PCI regulated sites, according to the <a href="https://www.pcisecuritystandards.org/security_standards/pci_dss.shtml" target="_blank">PCI DSS</a>, indicates that a site is not compliant (see section 6.5.4) if vulnerable to XSS.<br />Uh-oh.<br /><a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_kVOWaY1TAF0/SN1wVI4q8FI/AAAAAAAAADo/ZzFA7u8xNCA/s1600-h/GMparts_xss_trustwave.png" target="_blank"><img style="cursor:pointer; cursor:hand;" src="http://2.bp.blogspot.com/_kVOWaY1TAF0/SN1wVI4q8FI/AAAAAAAAADo/ZzFA7u8xNCA/s320/GMparts_xss_trustwave.png" border="0" alt=""id="BLOGGER_PHOTO_ID_5250476249048608850" /></a><br />All it takes is a fake login page, as opposed to our friends at <a href="http://xssed.com/" target="_blank">XSSED.com</a>, and...well, you get the point.<br />Simply, this is one of an endless number of shopping cart not secure, and not PCI compliant. For shame. You need only browse the <a href="http://holisticinfosec.org/content/category/6/23/45/" target="_blank">Holisticinfosec.org Advisories</a> page to find multiple ecommerce platforms and shopping carts that are missing the mark. Trust me, these are a fraction of the <a href="http://secunia.com/advisories/search/?search=shopping+cart" target="_blank">problem</a>.<br />ecommerce<>security<br />ecommerce<><a href="http://msdn.microsoft.com/en-us/library/ms995349.aspx" target="_blank">SDL</a><br />ecommerce<>PCI<br />website security seal<>security<br />Sigh.]]></content:encoded>
      <pubDate>Fri, 26 Sep 2008 11:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/ecommerce">ecommerce</category>
      <category domain="http://securityratty.com/tag/multiple ecommerce platforms">multiple ecommerce platforms</category>
      <category domain="http://securityratty.com/tag/ecommerce sdl">ecommerce sdl</category>
      <category domain="http://securityratty.com/tag/ecommerce perspective">ecommerce perspective</category>
      <category domain="http://securityratty.com/tag/pci">pci</category>
      <category domain="http://securityratty.com/tag/pci dss">pci dss</category>
      <category domain="http://securityratty.com/tag/cart solutions">cart solutions</category>
      <category domain="http://securityratty.com/tag/cart">cart</category>
      <category domain="http://securityratty.com/tag/ecommerce security">ecommerce security</category>
      <source url="http://holisticinfosec.blogspot.com/2008/09/hype-alert-internet-shopping-carts-are.html">Hype Alert: Internet Shopping Carts Are Secure</source>
    </item>
    <item>
      <title><![CDATA[Visa to develop e-payment applications for Android, Nokia phones]]></title>
      <link>http://securityratty.com/article/539d4a1928074468d4f77d0d8c3044f5</link>
      <guid>http://securityratty.com/article/539d4a1928074468d4f77d0d8c3044f5</guid>
      <description><![CDATA[Consumers will receive what Visa calls 'near real-time' notification of purchase activity, based on parameters they set...]]></description>
      <content:encoded><![CDATA[Consumers will receive what Visa calls 'near real-time' notification of purchase activity, based on parameters they set up.<br style="clear: both;"/>
    <a style='font-size: 10px; color: maroon;' href='http://www.pheedo.com/hostedMorselClick.php?hfmm=v3:842b87190c8495845fef7a9ce0823867:l3rBLQjNmPDfsBgMMsKYCdemrvq1WtBlKR2KcqNiGszB5fUqeWneIVcvJP%2BL9pme20wVmWxvms7e'><img border='0' title='Add to digg' alt='Add to digg' src='http://www.pheedo.com/images/mm/digg.gif'/></a>
    <a style='font-size: 10px; color: maroon;' href='http://www.pheedo.com/hostedMorselClick.php?hfmm=v3:d552e4d82241291e12b4f9cd46c1a82f:r72UF0jPPeJY3jCMj85fDkKTXi01R%2FUdPPePwHAqCZGqgFDJAoZVtIKsf2Sxaack1yuIQmwPmWVcAg%3D%3D'><img border='0' title='Add to StumbleUpon' alt='Add to StumbleUpon' src='http://www.pheedo.com/images/mm/stumbleit.gif'/></a>
    <a style='font-size: 10px; color: maroon;' href='http://www.pheedo.com/hostedMorselClick.php?hfmm=v3:70b36a1b76bb45004de2d05665939f23:sp%2BxcCju3x5LREWr%2FfLqUY4fIJr21RmJUnJgm7FO9EYgGpmCXMSv2dc6xo1csF0DAcKoPJEsc4SwEA%3D%3D'><img border='0' title='Add to Twitter' alt='Add to Twitter' src='http://www.pheedo.com/images/mm/twitter.png'/></a>
    <a style='font-size: 10px; color: maroon;' href='http://www.pheedo.com/hostedMorselClick.php?hfmm=v3:dd9b34271d18c4fef8847cb38ff993a0:GbWoppmXu765BzxawpAUTBAB7NkDc4nVVa%2BPr1a0Qry3qlc4uoUc55hFnhtDfVjwKyP2CHCFLVK3wA%3D%3D'><img border='0' title='Add to Slashdot' alt='Add to Slashdot' src='http://www.pheedo.com/images/mm/slashdot.png'/></a>
<br style="clear: both;"/>  <img alt="" style="border: 0; height:1px; width:1px;" border="0" src="http://www.pheedo.com/img.phdo?i=8bb4372e4337d31b2c5d6585a9610148" height="1" width="1"/>
<img src="http://www.pheedo.com/feeds/tracker.php?i=8bb4372e4337d31b2c5d6585a9610148" style="display: none;" border="0" height="1" width="1" alt=""/>]]></content:encoded>
      <pubDate>Fri, 26 Sep 2008 00:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/visa calls">visa calls</category>
      <category domain="http://securityratty.com/tag/purchase activity">purchase activity</category>
      <category domain="http://securityratty.com/tag/receive">receive</category>
      <category domain="http://securityratty.com/tag/parameters">parameters</category>
      <category domain="http://securityratty.com/tag/consumers">consumers</category>
      <category domain="http://securityratty.com/tag/real-time">real-time</category>
      <category domain="http://securityratty.com/tag/notification">notification</category>
      <category domain="http://securityratty.com/tag/set">set</category>
      <category domain="http://securityratty.com/tag/based">based</category>
      <source url="http://feeds.computerworld.com/click.phdo?i=8bb4372e4337d31b2c5d6585a9610148">Visa to develop e-payment applications for Android, Nokia phones</source>
    </item>
    <item>
      <title><![CDATA[Forever 21 discloses card data theft]]></title>
      <link>http://securityratty.com/article/14a2ea0fe0e1673df3d5680f497de463</link>
      <guid>http://securityratty.com/article/14a2ea0fe0e1673df3d5680f497de463</guid>
      <description><![CDATA[Almost 99,000 payment cards used by customers at discount retailer Forever 21 may have been compromised between 2004 and 2007, the company disclosed last...]]></description>
      <content:encoded><![CDATA[Almost 99,000 payment cards used by customers at discount retailer Forever 21 may have been compromised between 2004 and 2007, the company disclosed last week.<br style="clear: both;"/>
    <a style='font-size: 10px; color: maroon;' href='http://www.pheedo.com/hostedMorselClick.php?hfmm=v2:b449a8d9b2bf754c5df2ebc638ecb017:fzK7MoKQ8VotIlRDq3WGDkMZr%2BM53SQnf5EcLZYKLwLzDJ8W1AO26FaHtdMqineB7id3aAqnUYiOaq1IkoxUzxXMiEVVfAZwBUX7Vi7pr3c%3D'><img border='0' title='Add to digg' alt='Add to digg' src='http://www.pheedo.com/images/mm/digg.gif'/></a>
    <a style='font-size: 10px; color: maroon;' href='http://www.pheedo.com/hostedMorselClick.php?hfmm=v2:e5fb7b5a72bd49ff80b07b0c518f058e:vKCEH85KAUsvxZwPfNSah7nRRmdKbUse1PVIHLqFDnouV72YwryowwrcrY7vq07HypL6SSAxROqWCKwhQOi0LPmwIhWmng7Poj3LtOgurG8%3D'><img border='0' title='Add to StumbleUpon' alt='Add to StumbleUpon' src='http://www.pheedo.com/images/mm/stumbleit.gif'/></a>
    <a style='font-size: 10px; color: maroon;' href='http://www.pheedo.com/hostedMorselClick.php?hfmm=v2:6e184c36e57d8a3d7ce004552a338b93:PlOi4KjPBjotoWE0jYwnpULcnIlSZVe%2FPXVtF%2FSv7i6MN8pzCAyoIXf3%2F2q4r7sWKzbgBWdbMzgaFXnUf6APkQjZc%2FfHoTCbnowRyUykuQU%3D'><img border='0' title='Add to Twitter' alt='Add to Twitter' src='http://www.pheedo.com/images/mm/twitter.png'/></a>
    <a style='font-size: 10px; color: maroon;' href='http://www.pheedo.com/hostedMorselClick.php?hfmm=v2:fb99bd0a466000f1f87a3bdefefc027e:bzRufGzij8umODO%2B6Ygu4EVzwhrLEYYYVX9Ol%2BKemKrf4xcT%2FZgPGyCWMULjVK4sWdv%2Fda82ZShsxsnXM7tFWzXLkwZk5%2B3nPy7TABdOvA4%3D'><img border='0' title='Add to Slashdot' alt='Add to Slashdot' src='http://www.pheedo.com/images/mm/slashdot.png'/></a>
<br style="clear: both;"/>  <img alt="" style="border: 0; height:1px; width:1px;" border="0" src="http://www.pheedo.com/img.phdo?i=c8c8ef03134d8e9747fab23eb49a716e" height="1" width="1"/>
<img src="http://www.pheedo.com/feeds/tracker.php?i=c8c8ef03134d8e9747fab23eb49a716e" style="display: none;" border="0" height="1" width="1" alt=""/>]]></content:encoded>
      <pubDate>Mon, 22 Sep 2008 00:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/discount retailer forever">discount retailer forever</category>
      <category domain="http://securityratty.com/tag/payment cards">payment cards</category>
      <category domain="http://securityratty.com/tag/week">week</category>
      <category domain="http://securityratty.com/tag/customers">customers</category>
      <category domain="http://securityratty.com/tag/company">company</category>
      <source url="http://feeds.computerworld.com/click.phdo?i=c8c8ef03134d8e9747fab23eb49a716e">Forever 21 discloses card data theft</source>
    </item>
    <item>
      <title><![CDATA[Almost 99,000 Credit Cards Compromised In Data Theft In Forever 21 Retail Stores]]></title>
      <link>http://securityratty.com/article/cc274d5b274284ab7e359529a9406474</link>
      <guid>http://securityratty.com/article/cc274d5b274284ab7e359529a9406474</guid>
      <description><![CDATA[Payment cards used by customers of several Forever 21 Inc. retail stores may have been compromised in a series of data thefts dating back to August 2004. Forever 21, a discount retailer company based...]]></description>
      <content:encoded><![CDATA[Payment cards used by customers of several Forever 21 Inc. retail stores may have been compromised in a series of data thefts dating back to August 2004. Forever 21, a discount retailer company based in Los Angeles, have been notified by the U.S. Department of Justice in Boston on Aug. 5. There was no explanation [...]]]></content:encoded>
      <pubDate>Thu, 18 Sep 2008 15:20:19 +0000</pubDate>
      <category domain="http://securityratty.com/tag/forever">forever</category>
      <category domain="http://securityratty.com/tag/retail stores">retail stores</category>
      <category domain="http://securityratty.com/tag/payment cards">payment cards</category>
      <category domain="http://securityratty.com/tag/data thefts">data thefts</category>
      <category domain="http://securityratty.com/tag/los angeles">los angeles</category>
      <category domain="http://securityratty.com/tag/boston">boston</category>
      <category domain="http://securityratty.com/tag/department">department</category>
      <category domain="http://securityratty.com/tag/series">series</category>
      <category domain="http://securityratty.com/tag/aug">aug</category>
      <source url="http://cyberinsecure.com/almost-99000-credit-cards-compromised-in-forever-21-data-theft/">Almost 99,000 Credit Cards Compromised In Data Theft In Forever 21 Retail Stores</source>
    </item>
    <item>
      <title><![CDATA[Achieve PCI Compliance with Novell Sentinel"]]></title>
      <link>http://securityratty.com/article/5584b6c73bb6b008dc55d25cde9e18ee</link>
      <guid>http://securityratty.com/article/5584b6c73bb6b008dc55d25cde9e18ee</guid>
      <description><![CDATA[Source: Novell) Security trends and hacking techniques are continually changing, and the Payment Card Industry Data Security Standard (PCI-DSS) continues to evolve. To stay ahead of these trends and...]]></description>
      <content:encoded><![CDATA[<b>(Source: Novell)</b> Security trends and hacking techniques are continually changing, and the Payment Card Industry Data Security Standard (PCI-DSS) continues to evolve. To stay ahead of these trends and prove compliance, your organization needs a powerful solution for collecting and monitoring user activity.<br style="clear: both;"/>
    <a style='font-size: 10px; color: maroon;' href='http://www.pheedo.com/hostedMorselClick.php?hfmm=v2:862cad5979cd86dd9b041f8dcab5383d:eskLMNGQysad%2BGae58GrYv5PaOa5Zg%2Bz40MS8T175mEorD%2B%2FLQqQANaldZuextYnKpnkit2of%2Bbd9gFHdD%2BLWT6zlGvbKIZuA7RMkHUg6vw%3D'><img border='0' title='Add to digg' alt='Add to digg' src='http://www.pheedo.com/images/mm/digg.gif'/></a>
    <a style='font-size: 10px; color: maroon;' href='http://www.pheedo.com/hostedMorselClick.php?hfmm=v2:f386ff3d28922bd303171267fdb268e4:dLW9nPkOJF82I%2BJNdr4BAZOBj70pw41b3z69ZxYdr6H%2B%2Bd1HV8w%2FJZanr2P%2B4Z3ka5d7Ctg3lLHrqCTw1k0LU55PDK7Flf3cjNHjLJLjbvs%3D'><img border='0' title='Add to StumbleUpon' alt='Add to StumbleUpon' src='http://www.pheedo.com/images/mm/stumbleit.gif'/></a>
    <a style='font-size: 10px; color: maroon;' href='http://www.pheedo.com/hostedMorselClick.php?hfmm=v2:500b65d2a2d93379ccda3f941c5e0607:ukDWN2xx%2Fows5a4Gy6Y9oI8tApQt5iZXIn4bfcVbOjWN2ClNAI%2FL2NDnOlFOGDrWZwe499Uqwwc7GC3lfQr%2FKFK9VMDuL1bzCzXNVZv782Q%3D'><img border='0' title='Add to Twitter' alt='Add to Twitter' src='http://www.pheedo.com/images/mm/twitter.png'/></a>
    <a style='font-size: 10px; color: maroon;' href='http://www.pheedo.com/hostedMorselClick.php?hfmm=v2:2aeb1f89498f5728e82b5bfb57c4802f:DLWhDulxc502vb4oluiJUUKEytqnjHAh5vvO8mjY44tS22srX4PL0w0cb%2F8%2BIAk%2FrB03lvpgapi6OT5rr3btdTnscksoNIdLt%2FujScUvSOc%3D'><img border='0' title='Add to Slashdot' alt='Add to Slashdot' src='http://www.pheedo.com/images/mm/slashdot.png'/></a>
<br style="clear: both;"/>      <a href="http://www.pheedo.com/feeds/ht.php?t=c&amp;i=c62e6281f0b4aef40f0c51614d634a96"><img src="http://www.pheedo.com/feeds/ht.php?t=v&amp;i=c62e6281f0b4aef40f0c51614d634a96" border="0" /></a>
  <img src="http://www.pheedo.com/feeds/tracker.php?i=c62e6281f0b4aef40f0c51614d634a96" style="display: none;" border="0" height="1" width="1" alt=""/>]]></content:encoded>
      <pubDate>Thu, 18 Sep 2008 09:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/security trends">security trends</category>
      <category domain="http://securityratty.com/tag/trends">trends</category>
      <category domain="http://securityratty.com/tag/stay ahead">stay ahead</category>
      <category domain="http://securityratty.com/tag/user activity">user activity</category>
      <category domain="http://securityratty.com/tag/powerful solution">powerful solution</category>
      <category domain="http://securityratty.com/tag/prove compliance">prove compliance</category>
      <category domain="http://securityratty.com/tag/novell">novell</category>
      <category domain="http://securityratty.com/tag/source">source</category>
      <category domain="http://securityratty.com/tag/evolve">evolve</category>
      <source url="http://feeds.computerworld.com/click.phdo?i=c62e6281f0b4aef40f0c51614d634a96">Achieve PCI Compliance with Novell Sentinel"</source>
    </item>
    <item>
      <title><![CDATA[Retail security: Knee-jerk standards compliance isnt enough]]></title>
      <link>http://securityratty.com/article/e348cfaf870dedc654a1750de9c56de9</link>
      <guid>http://securityratty.com/article/e348cfaf870dedc654a1750de9c56de9</guid>
      <description><![CDATA[NEW YORK -- Businesses certified to be compliant with the Payment Card Industry Data Security Standards (PCI DSS) keep suffering data breaches, but the problem may be more with the way businesses...]]></description>
      <content:encoded><![CDATA[NEW YORK -- Businesses certified to be compliant with the Payment Card Industry Data Security Standards (PCI DSS) keep suffering data breaches, but the problem may be more with the way businesses address the requirements than with the PCI standard, experts told an Interop http://www.networkworld.com/news/2008/091808-interop-people-security-threat.html gathering.]]></content:encoded>
      <pubDate>Wed, 17 Sep 2008 20:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/businesses address">businesses address</category>
      <category domain="http://securityratty.com/tag/businesses">businesses</category>
      <category domain="http://securityratty.com/tag/pci dss">pci dss</category>
      <category domain="http://securityratty.com/tag/pci standard">pci standard</category>
      <category domain="http://securityratty.com/tag/data breaches">data breaches</category>
      <category domain="http://securityratty.com/tag/requirements">requirements</category>
      <category domain="http://securityratty.com/tag/interop">interop</category>
      <category domain="http://securityratty.com/tag/york">york</category>
      <category domain="http://securityratty.com/tag/compliant">compliant</category>
      <source url="http://www.networkworld.com/news/2008/091808-interop-compliance.html?fsrc=rss-security">Retail security: Knee-jerk standards compliance isnt enough</source>
    </item>
  </channel>
</rss>
