Feeds

TJX takes $118m hit over massive security breach

$2.60 each for exposed credit card

Choosing a cloud hosting partner with confidence

TJX, the American retail giant, has set aside $118m to cover costs and potential liability arising from a security breach to its database systems.

Crooks gained access to 45.6m credit and debit card records during the breach, which lasted 17 months between July 2005 and January 2007. TJX's $118m after-tax cash charge for Q2 2008 includes $11m in security consultancy fees and other expenses directly related to the attack and a contingency fund of $107m to cover liability payments arising from pending lawsuits.

In addition, TJX expects to chalk up non-cash charges of approximately $21m for FY2009.

The funds set aside by TJX are a fraction of the $1bn-plus losses estimated by analyst firms, and much less than guesstimates from security consultancies, who have a clear axe to grind in talking up the financial impact of security breaches. Tellingly, investors haven't marked down TJX share price significantly in the expectation of major losses down the road.

TJX announced the impact of the intrusions into its systems on its bottom line as it announced Q2 2008 results. Net sales for Q2 2008 were up nine per cent to $4.3bn, resulting in an income of $59m. ®

Beginner's guide to SSL certificates

More from The Register

next story
Russian hackers exploit 'Sandworm' bug 'to spy on NATO, EU PCs'
Fix imminent from Microsoft for Vista, Server 2008, other stuff
Microsoft pulls another dodgy patch
Redmond makes a hash of hashing add-on
FYI: OS X Yosemite's Spotlight tells Apple EVERYTHING you're looking for
It's on by default – didn't you read the small print?
'LulzSec leader Aush0k' found to be naughty boy not worthy of jail
15 months home detention leaves egg on feds' faces as they grab for more power
Forget passwords, let's use SELFIES, says Obama's cyber tsar
Michael Daniel wants to kill passwords dead
FBI boss: We don't want a backdoor, we want the front door to phones
Claims it's what the Founding Fathers would have wanted – catching killers and pedos
Kill off SSL 3.0 NOW: HTTPS savaged by vicious POODLE
Pull it out ASAP, it is SWISS CHEESE
prev story

Whitepapers

Forging a new future with identity relationship management
Learn about ForgeRock's next generation IRM platform and how it is designed to empower CEOS's and enterprises to engage with consumers.
Cloud and hybrid-cloud data protection for VMware
Learn how quick and easy it is to configure backups and perform restores for VMware environments.
Three 1TB solid state scorchers up for grabs
Big SSDs can be expensive but think big and think free because you could be the lucky winner of one of three 1TB Samsung SSD 840 EVO drives that we’re giving away worth over £300 apiece.
Reg Reader Research: SaaS based Email and Office Productivity Tools
Read this Reg reader report which provides advice and guidance for SMBs towards the use of SaaS based email and Office productivity tools.
Security for virtualized datacentres
Legacy security solutions are inefficient due to the architectural differences between physical and virtual environments.