Feeds

New ID leak from Global Payments

More fallout from hack attack

Top 5 reasons to deploy VMware with Tegile

Credit and debit card processor Global Payments has warned that additional confidential information on its servers may have been compromised in the hacking attack earlier this year that saw around 1.5 million credit card details snatched.

In a press call, company CEO Paul Garcia said that subsequent investigations internally and by federal authorities into that attack have shown that confidential information submitted by small merchant customers may have been compromised, although it wasn't clear if the attackers had scanned it.

"What we initially announced did impact less than 1.5 million cards that we believed were taken by the bad guys for nefarious purposes," Garcia said. "This is something very different. We uncovered that the bad guys may have had access."

Garcia declined to give details on the nature of the information or the numbers of customers effected, but said that each would get $1m in identity fraud insurance paid for by the company. Credit agencies have also been informed and those at risk would be contacted. So far there was only "anecdotal" evidence of fraud on the stolen credit cards and none on the new leak, he said.

In an effort to woo back lost customers like Visa, Global Payments has drafted in an independent consultant to examine its security and data handling procedures. Some payment companies have pulled Global Payments from their data security standard (PCI DSS) list and Garcia said that his staff would then make any changes suggested in the consultant's report and reapply for certification.

Despite the loss of revenue stemming from the attack, Garcia said that the company was sticking with its current financial forecasts for the year and expects this to be a one-time cost to the balance sheet. ®

Security for virtualized datacentres

More from The Register

next story
'Kim Kardashian snaps naked selfies with a BLACKBERRY'. *Twitterati gasps*
More alleged private, nude celeb pics appear online
Home Depot ignored staff warnings of security fail laundry list
'Just use cash', former security staffer warns friends
Hackers pop Brazil newspaper to root home routers
Step One: try default passwords. Step Two: Repeat Step One until success
UK.gov lobs another fistful of change at SME infosec nightmares
Senior Lib Dem in 'trying to be relevant' shocker. It's only taxpayers' money, after all
Who.is does the Harlem Shake
Blame it on LOLing XSS terroristas
Snowden, Dotcom, throw bombs into NZ election campaign
Claim of tapped undersea cable refuted by Kiwi PM as Kim claims extradition plot
Freenode IRC users told to change passwords after securo-breach
Miscreants probably got in, you guys know the drill by now
THREE QUARTERS of Android mobes open to web page spy bug
Metasploit module gobbles KitKat SOP slop
BitTorrent's peer-to-peer chat app Bleep goes live as public alpha
A good day for privacy as invisble.im also reveals its approach to untraceable chats
prev story

Whitepapers

Providing a secure and efficient Helpdesk
A single remote control platform for user support is be key to providing an efficient helpdesk. Retain full control over the way in which screen and keystroke data is transmitted.
A strategic approach to identity relationship management
ForgeRock commissioned Forrester to evaluate companies’ IAM practices and requirements when it comes to customer-facing scenarios versus employee-facing ones.
Saudi Petroleum chooses Tegile storage solution
A storage solution that addresses company growth and performance for business-critical applications of caseware archive and search along with other key operational systems.
WIN a very cool portable ZX Spectrum
Win a one-off portable Spectrum built by legendary hardware hacker Ben Heck
The next step in data security
With recent increased privacy concerns and computers becoming more powerful, the chance of hackers being able to crack smaller-sized RSA keys increases.