Communiversity

Afrikan Liberation Institute => Math and Science (STEM) => Topic started by: Ajamu on Apr 03, 2012, 03:53 PM

Title: How to Tell if You’re Caught in the Giant Global Payments Credit Card Fraud-gctid50421
Post by: Ajamu on Apr 03, 2012, 03:53 PM
How to Tell if You (http://www.pcworld.com/article/253024/how_to_tell_if_youre_caught_in_the_giant_global_payments_credit_card_fraud.html#tk.hp_pop)

                  By Howard Baldwin  (http://www.pcworld.com/author/Howard-Baldwin-), PCWorld (http://www.pcworld.com/)                    Apr 2, 2012 11:55 AM        
                                                                                                                                                (https://www.abibitumikasa.com/proxy.php?request=http%3A%2F%2Fzapp5.staticworld.net%2Fimages%2Farticle%2F2012%2F03%2Fsecurity_tech-11330574.jpg&hash=ed89395e5fc5399c8373881b233bb72e7deca003)

Fallout  from the Global Payments fiasco that could affect potentially millions  of credit cardholders continues. First, Visa over the weekend dropped  the Atlanta-based credit card processor from its ranks as a partner  "compliant" in accepted industry data security standards.

 Meanwhile, Global Payments said that cardholders' names, addresses and Social Security numbers were not obtained by hackers (http://www.pcworld.com/businesscenter/article/252990/global_payments_says_fewer_than_15m_cards_affected_in_data_theft.html).  The company says that only what's known as Track 2 data (relating to  the magnetic strip on the back of the card) was stolen--that is, the  credit card numbers and their expiration dates.

 "Based on the forensic analysis to date, network monitoring and  additional security measures, the company believes that this incident is  contained," Global Partners added.

 However, it appears to be left to credit card-holding consumers to  figure out their own potential exposure in the mess. The blogosphere is  sparkling with speculation, but the facts are still sparse. Global  Payments said Monday it is in the process of setting up a website to  help consumers who might be affected.

 What Makes It Complicated

 A part of what it is difficult to determine exactly who might be  affected stems from the complex nature of the credit card processing  chain.

 When you make a credit card purchase, you trigger a six-step process (http://www.creditcards.com/credit-card-news/assets/HowACreditCardIsProcessed.pdf)  (PDF) that transmits information (1) from your credit card to the  merchant making the sale; (2) from the merchant to an entity called a  processor (or, in industry terms, an acquirer), in this case, a company  like Global Payments; (3) from the processor to the issuer (your bank);  (4) from the issuer back to the processor; (5) from the processor back  to the merchant; and (6) you take your merchandise. Here's a diagram  that may help:

 (https://www.abibitumikasa.com/proxy.php?request=http%3A%2F%2Fzapp5.staticworld.net%2Fimages%2FzoomIcon.png&hash=49da2f430d5caa5ea7bd85a19eba1d227d52f58b)(https://www.abibitumikasa.com/proxy.php?request=http%3A%2F%2Fzapp5.staticworld.net%2Fimages%2Farticle%2F2012%2F04%2Fhow20a20credit20card20is20processed-11342457.jpg&hash=d6c9a087cf5cd24584250df93789fa65950c08fe) (http://zapp5.staticworld.net/images/article/2012/04/how20a20credit20card20is20processed-11342454.jpg)
 
The part of the process that was breached was the step between the  merchant and the processor; the former being a New York City taxi and  parking garage company, according to Gartner analyst Avivah Litan (http://blogs.gartner.com/avivah-litan/2012/03/30/new-credit-card-data-breach-revealed/).  Global Payments apparently first identified the potential breach in  early March, and the problem had been undetected for several months  before that. Therefore, the pool of victims is likely to be those who  used their debit or credit cards for transportation in the New York  metropolitan area earlier this year.

 Global Payments says that it believes 1.5 million card numbers (http://phx.corporate-ir.net/phoenix.zhtml?c=125339&p=irol-newsArticle&ID=1678829&highlight=)  may have been breached. Since apparently no customer names were  associated with the data breached, this problem does not appear to  involve identity theft. According to Census Bureau 2010 estimates (http://www.creditcards.com/credit-card-news/credit-card-industry-facts-personal-debt-statistics-1276.php),  there are somewhere in the neighborhood of 181 million credit cards in  the United States, so this breach could represent less than one percent  of credit cards in use.

 What Steps a Consumer Should Take

 However, if you still think you might be part of this group, what can  you do besides wait for your bank to notify you that you may be  affected, based on current breach notification laws?

 First, start monitoring your credit card statement (thank goodness  for online banking) for unauthorized activity--though, given that the  breach has been happening for a while--you may have already noticed  something awry. Look for charges for items or locations you don't  recognize.

 You can also place a fraud alert on your credit report (through credit reporting agencies like Experian (https://www.experian.com/fraud/center.html))  if you want. Here's how Experian explains these alerts: "Fraud alert  messages notify potential credit grantors to verify your identification  before extending credit in your name in case someone is using your  information without your consent."

 Finally, remember that both Visa (http://united%20snakes.visa.com/personal/security/visa_security_program/zero_liability.html) and MasterCard offer what the companies call "zero liability" to the shopper for unauthorized credit card purchases.