Global Payments: Breach Contained, But Damage Done
Apr 03, 2012, 07:00 (1 Talkback[s])
(Other stories by Sean Michael Kerner)
"Marcus Carey, security researcher at security vendor Rapid7,
told eSecurity Planet that the Global Payments breach highlights
that PCI-DSS is really an absolute minimum bar when it comes to
security posture, and that the certification does not guarantee
that an organization is secure.
"We recommend that our customers and all organizations go well
above the PCI-DSS security requirements," Carey said. "Since
attacks like this will not stop, organizations really do need to
invest in vulnerability management and incident response to limit
their attack surfaces and quickly identify breaches once they
occur."
Complete Story
Related Stories: