Michigan Bank Forced To Cancel CardsBest Security Tips offers daily news, information, advices and tips about spyware, adware, viruses, trojans, web vulnerabilities, hackers, other threats    Click here for Free IT - Security Resources! | Register now | Login
   
TIPS NEWS TOOLS DOWNLOADS MALWARE FORUM BOOKS FREE MAGAZINES FREE WEBCASTS & VIDEOS
GFI LANguard - New Version 9 Out Now - Dld 30-day trial! del.icio.us  digg  Furl  NewsVine  Spurl  Blinklist  Ma.gnolia  Reddit  Tailrank  YahooMyWeb 
Best Tips
Security Scanner
Security Categories
Advertise With Us!
Latest Viruses / Threats
2008/12/4 23:27:30
2008/12/4 23:27:30
2008/12/4 23:27:30
2008/12/4 23:27:30
2008/12/4 23:27:30
Downloads
RSS / Atom Feeds
Security Incidents : Michigan Bank Forced To Cancel Cards
Posted by Max on 2006/11/21 14:41:29 (1213 reads)
Security Incidents

Some financial institutions last week canceled thousands of credit and debit cards in Michigan due to fraud alarms related to an possible data compromise at a convenience store chain, stressing the wide effect that retail security breaches can have.

Fifth Third Bancorp, a large Cincinnati-based banking company, said it was reissuing debit cards to “a limited number” of customers in Michigan after being notified by Master Card International Inc. of probable compromises. Two Muskegon, Mich.-based institutions, Community Shores Bank Corp. and Family Financial Credit Union, said they also reinstated some of their cards after seeing proof of fraudulent transactions.

The problems appear to have resulted from a security breach at Wesco, a Muskegon-based gas station and convenience store chain with 51 locations in Michigan. Wesco didn’t respond to requirements for comment. But in a note on its Web site, the company declared it is “investigating the possibility of credit card fraud associated with card use at our facilities.”


Analysis Launched

According to the note, credit card transactions operated between July 25 and Sept. 7 may have been compromised. Wesco said the U.S. attorney’s office in Grand Rapids, Mich., and the U.S. Secret Service have launched an investigation in an effort “to understand the scope of the problem.”

Both MasterCard and Visa USA Inc. confirmed that they were investigating a data breach in the Muskegon area, but neither wanted to identify the retailer that was involved.

Sherri Campbell, vice president of deposit operations at Community Shores Bank, said she has spoken with some workers on Visa USA’s fraud team about the possibility of Wesco being the source of the data compromise. But, she said, “nobody will admit to that yet. So it’s up to everybody to infer what they want.”

It also wasn’t clear how the data might have been compromised. But four out of five data compromises involve security breaches at point-of-sale systems, said Avivah Litan, an analyst at Gartner Inc. The POS systems at convenience and grocery stores, as well as gas stations, can be especially vulnerable because of a lack of IT security awareness and resources, Litan said.

Much of the disclosure results from merchants connecting their POS terminals to IP-based networks, Litan said. Frequently, such systems store magnetic stripe data from cards and have default passwords that can be easily hacked, she added.

The Payment Card Industry security standard explicitly prohibits the storing of magnetic stripe data on POS systems. But retailers continue to do so, and many POS applications store the data by default, Litan said.

Community Shores Bank asked about 550 customers to destroy their debit and credit cards after it noticed some of its cards being used to carry out fraudulent transactions, Campbell said. The fraud began two weeks ago and then started “rapidly increasing,” she said.

A spokeswoman for Fifth Third said its resolution to reissue cards to some customers was a preventive measure. She refused to disclose how many debit cards were being blocked and reissued.

The problems in Michigan follow a worldwide wave of debit card fraud in February and March that also stemmed from a retail breach and forced financial institutions such as Bank of America Corp. and Citibank to cancel and reissue tens of thousands of cards.




Other articles
2008/12/4 2:24:49 - Google Chrome Browser to Get Security Extensions
2008/12/4 2:04:47 - Practical Guide for Secure Christmas Shopping by Panda Security
2008/12/1 4:01:09 - GFI Releases the Most Advanced Version of GFI LANguard™
2008/12/1 3:46:23 - New From Symantec : Norton AntiVirus 2009 Gaming Edition
2008/11/26 14:25:35 - NEW! FREE IObit Advanced SystemCare Version 3.0
2008/11/26 14:21:32 - Discretix and MontaVista Linux Release DRM Content Protection
2008/11/23 5:41:27 - High School Musical Songs and Videos Used to Infect Unsuspecting Users
2008/11/23 5:18:40 - Beware Microsoft, Free Anti-Virus Is a Hard Taks ! Warns AVG
2008/11/18 16:16:42 - Beware of Increased Identity Theft on Upcoming Black Friday and Cyber Monday
2008/11/18 16:11:38 - Microsoft Plans New FREE Antimalware Product Codename "Morro"

The comments are owned by the poster. We aren't responsible for their content.