30 Oct, 2008
TJX presentation @ NCA Conference
NCA’s 2008 Security and Technology Conference was yesterday and Carlos Dominguez of Cisco opened the day with a high energy presentation that set a very high standard. I was pleased with the interest in my afternoon presentation on TJX, which was well attended.
The TJX data breach is worth following for two reasons. One is simply the mind boggling scale of compromising 45 million cards and nearly half a million identities over a period of years. Another is the demonstration of some great IT security precepts that everyone can learn from. In my presentation I give an overview of the American hackers who broke into the TJX network, the Eastern European and Chinese carders who facilitated the trading of the stolen cards, and the money mules in Miami who were caught using the cards.
The most important lesson of TJX is the simplest one – protect customer data at all costs, because once the genie has escaped from the bottle, it’s too late. I’ll look at distilling some of the presentation points into a blog post in the future.
Read the full article…

![Reblog this post [with Zemanta]](http://img.zemanta.com/reblog_e.png?x-id=475d4aed-bb05-454a-8e73-6f42eebbb481)
