
{"id":1729,"date":"2012-01-17T00:00:00","date_gmt":"2012-01-17T00:00:00","guid":{"rendered":"http:\/\/otava.test\/recent-data-breaches-affect-pci-compliance\/"},"modified":"2012-01-17T00:00:00","modified_gmt":"2012-01-17T00:00:00","slug":"recent-data-breaches-affect-pci-compliance","status":"publish","type":"post","link":"https:\/\/www.otava.com\/blog\/recent-data-breaches-affect-pci-compliance\/","title":{"rendered":"Recent Data Breaches Exemplify the Importance of PCI Compliance"},"content":{"rendered":"<p>Strafor, the latest target of hackers, lost credit cardholder data in December that was released to the public later that month. \u00a0The data belonged to thousands of customers, including politicians, military officers, government officials and business executives.<\/p>\n<p>Stratfor is a private international affairs research firm that may have not encrypted data before storing it in its database, allowing hackers to access and release customer credit card numbers. As a result of lax online security, the firm\u2019s website was taken down and lost a month\u2019s worth of subscriptions \u2013 forcing the company to draw on its savings to survive.<\/p>\n<p>The PCI DSS (Payment Card Industry Data Security Standard) is regulated by major industry card-issuers, including VISA, American Express, Discover, MasterCard and JCB International, and applies to companies that accept, store, process and transmit cardholder data.<\/p>\n<p>The second goal of the 12 requirements is to <strong>Protect Cardholder Data<\/strong>. Within this goal, requirement #3 states the company must protect stored cardholder data, while Requirement #4 explicitly states:<\/p>\n<blockquote><p>Encrypt transmission of cardholder data across open, public networks.<\/p><\/blockquote>\n<figure id=\"attachment_4434\" aria-describedby=\"caption-attachment-4434\" style=\"width: 488px\" class=\"wp-caption aligncenter\"><img loading=\"lazy\" decoding=\"async\" class=\"size-full wp-image-4434 \" title=\"PCI Requirements\" src=\"https:\/\/www.otava.com\/wp-content\/uploads\/2019\/04\/PCI-Requirements.png\" alt=\"PCI Requirements\" width=\"488\" height=\"226\" \/><figcaption id=\"caption-attachment-4434\" class=\"wp-caption-text\">PCI Requirements<\/figcaption><\/figure>\n<p>Detailed requirements of encryption include using industry best practices to implement strong encryption for authentication and transmission over wireless networks or networks connected to the cardholder data environment. When it comes to outsourcing a hosting solution, your <a href=\"https:\/\/otavawebsite.wpengine.com\/compliance-security\/pci-compliant-cloud\/\">PCI hosting<\/a> provider should provide evidence that the network is secure and encrypted.<\/p>\n<p>The provisions also strictly forbid sending unprotected PANs (Primary Account Numbers) by email, instant messaging, chat, etc.<\/p>\n<p>Stratfor\u2019s subsequent steps will be to limit the scope of compliance by outsourcing credit card processing to a vendor. They are also revamping their website, email and internal systems with the help of an Internet security firm.<\/p>\n<p>Zappos, the online shoes and apparel retailer owned by Amazon, most recently suffered a data breach that may affect more than 24 million customers. An internal email to their employees reports that a hacker gained access to their internal network through one of their servers located in Kentucky.<\/p>\n<p>Although they report that no credit card or payment information was accessed, they are urging customers to change passwords on their online accounts. Names, contact information, password hashes and the last four digits of their credit card numbers were accessed. The company has not released any other details about the incident due to the ongoing investigation.<\/p>\n<p>Need more information about PCI compliance? Watch our pre-recorded <a href=\"https:\/\/www.onlinetech.com\/resources\/events\/webinars\/pci-webinar-series\">PCI webinar series<\/a> hosted by Online Tech and led by expert Adam Goslin, co-founder of High Bit Security.<\/p>\n<ul>\n<li><a href=\"https:\/\/www.onlinetech.com\/resources\/events\/webinars\/pci-webinar-series\/pci-compliance-overview\">PCI Compliance: Overview and First Steps to Success<\/a><\/li>\n<li><a href=\"https:\/\/otavawebsite.wpengine.com\/compliance-security\/pci-compliant-cloud\/\">PCI Compliance: Detailed Requirements Walkthrough<\/a><\/li>\n<li><a href=\"https:\/\/www.onlinetech.com\/resources\/events\/webinars\/pci-webinar-series\/pci-compliance-penetration-testing\">PCI Compliance: Penetration Testing and Enhancing Security for Network and Applications<\/a><\/li>\n<\/ul>\n<p>References:<br \/>\n<a href=\"https:\/\/www.pcisecuritystandards.org\/documents\/pci_dss_v2.pdf\">Payment Card Industry (PCI) Data Security Standard: Requirements and Security Assessment Procedures Version 2.0<\/a><br \/>\n<a href=\"https:\/\/www.nytimes.com\/reuters\/2012\/01\/11\/technology\/tech-us-stratfor.html?ref=technology\">Stratfor Relaunches Web Site in Wake of Attack<\/a><br \/>\n<a href=\"https:\/\/www.eweek.com\/c\/a\/Security\/Zappos-Latest-Company-Hit-by-Data-Breach-581979\/\">Zappos Latest Company Hit by Data Breach<\/a><br \/>\n<a href=\"https:\/\/www.databreaches.net\/?p=22881\">Zappos Hacked; Notifying 24+ Million Zappos.com and 6pm.com Customeres of Breach and to Reset Passwords<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Strafor, the latest target of hackers, lost credit cardholder data in December that was released to the public later that month. \u00a0The data belonged to thousands of customers, including politicians, military officers, government officials and business executives. Stratfor is a private international affairs research firm that may have not encrypted data before storing it in its database, allowing hackers to access and release customer credit card numbers. As a result of lax online security, the firm\u2019s website was taken down and lost a month\u2019s worth of subscriptions \u2013 forcing the company to draw on its savings to survive. The PCI DSS (Payment Card Industry Data Security Standard) is regulated by major industry card-issuers, including VISA, American Express, Discover, MasterCard and JCB International, and applies to companies that accept, store, process and transmit cardholder data. The second goal of the 12 requirements is to Protect Cardholder Data. Within this goal, requirement #3 states the company must protect stored cardholder data, while Requirement #4 explicitly states: Encrypt transmission of cardholder data across open, public networks. Detailed requirements of encryption include using industry best practices to implement strong encryption for authentication and transmission over wireless networks or networks connected to the cardholder data&#8230;<\/p>\n","protected":false},"author":3,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[1],"tags":[],"other_category":[],"class_list":["post-1729","post","type-post","status-publish","format-standard","hentry","category-uncategorized"],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO Premium plugin v27.2 (Yoast SEO v27.2) - https:\/\/yoast.com\/product\/yoast-seo-premium-wordpress\/ -->\n<title>Recent Data Breaches Exemplify the Importance of PCI Compliance | OTAVA<\/title>\n<meta name=\"description\" content=\"Strafor, the latest target of hackers, lost credit cardholder data in December that was released to the public later that month.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.otava.com\/blog\/recent-data-breaches-affect-pci-compliance\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Recent Data Breaches Exemplify the Importance of PCI Compliance\" \/>\n<meta property=\"og:description\" content=\"Strafor, the latest target of hackers, lost credit cardholder data in December that was released to the public later that month.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.otava.com\/blog\/recent-data-breaches-affect-pci-compliance\/\" \/>\n<meta property=\"og:site_name\" content=\"OTAVA\" \/>\n<meta property=\"article:published_time\" content=\"2012-01-17T00:00:00+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.otava.com\/wp-content\/uploads\/2019\/04\/PCI-Requirements.png\" \/>\n<meta name=\"author\" content=\"Irma Brillantes\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Irma Brillantes\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\/\/www.otava.com\/blog\/recent-data-breaches-affect-pci-compliance\/#article\",\"isPartOf\":{\"@id\":\"https:\/\/www.otava.com\/blog\/recent-data-breaches-affect-pci-compliance\/\"},\"author\":{\"name\":\"Irma Brillantes\",\"@id\":\"https:\/\/www.otava.com\/#\/schema\/person\/35774075f8f4fcdd4eae80cb72034263\"},\"headline\":\"Recent Data Breaches Exemplify the Importance of PCI Compliance\",\"datePublished\":\"2012-01-17T00:00:00+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\/\/www.otava.com\/blog\/recent-data-breaches-affect-pci-compliance\/\"},\"wordCount\":493,\"commentCount\":0,\"publisher\":{\"@id\":\"https:\/\/www.otava.com\/#organization\"},\"image\":{\"@id\":\"https:\/\/www.otava.com\/blog\/recent-data-breaches-affect-pci-compliance\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/www.otava.com\/wp-content\/uploads\/2019\/04\/PCI-Requirements.png\",\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\/\/www.otava.com\/blog\/recent-data-breaches-affect-pci-compliance\/#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\/\/www.otava.com\/blog\/recent-data-breaches-affect-pci-compliance\/\",\"url\":\"https:\/\/www.otava.com\/blog\/recent-data-breaches-affect-pci-compliance\/\",\"name\":\"Recent Data Breaches Exemplify the Importance of PCI Compliance | OTAVA\",\"isPartOf\":{\"@id\":\"https:\/\/www.otava.com\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/www.otava.com\/blog\/recent-data-breaches-affect-pci-compliance\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/www.otava.com\/blog\/recent-data-breaches-affect-pci-compliance\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/www.otava.com\/wp-content\/uploads\/2019\/04\/PCI-Requirements.png\",\"datePublished\":\"2012-01-17T00:00:00+00:00\",\"description\":\"Strafor, the latest target of hackers, lost credit cardholder data in December that was released to the public later that month.\",\"breadcrumb\":{\"@id\":\"https:\/\/www.otava.com\/blog\/recent-data-breaches-affect-pci-compliance\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/www.otava.com\/blog\/recent-data-breaches-affect-pci-compliance\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/www.otava.com\/blog\/recent-data-breaches-affect-pci-compliance\/#primaryimage\",\"url\":\"https:\/\/www.otava.com\/wp-content\/uploads\/2019\/04\/PCI-Requirements.png\",\"contentUrl\":\"https:\/\/www.otava.com\/wp-content\/uploads\/2019\/04\/PCI-Requirements.png\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/www.otava.com\/blog\/recent-data-breaches-affect-pci-compliance\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/www.otava.com\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Recent Data Breaches Exemplify the Importance of PCI Compliance\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/www.otava.com\/#website\",\"url\":\"https:\/\/www.otava.com\/\",\"name\":\"OTAVA\u00ae\",\"description\":\"\",\"publisher\":{\"@id\":\"https:\/\/www.otava.com\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/www.otava.com\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\/\/www.otava.com\/#organization\",\"name\":\"OTAVA\u00ae\",\"url\":\"https:\/\/www.otava.com\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/www.otava.com\/#\/schema\/logo\/image\/\",\"url\":\"https:\/\/www.otava.com\/wp-content\/uploads\/2025\/03\/otava-logo.svg\",\"contentUrl\":\"https:\/\/www.otava.com\/wp-content\/uploads\/2025\/03\/otava-logo.svg\",\"caption\":\"OTAVA\u00ae\"},\"image\":{\"@id\":\"https:\/\/www.otava.com\/#\/schema\/logo\/image\/\"}},{\"@type\":\"Person\",\"@id\":\"https:\/\/www.otava.com\/#\/schema\/person\/35774075f8f4fcdd4eae80cb72034263\",\"name\":\"Irma Brillantes\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/secure.gravatar.com\/avatar\/d5251bebc1699793a698d1a6158603cb3cdc50a095a12357e42d415b3e5546c2?s=96&d=mm&r=g\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/d5251bebc1699793a698d1a6158603cb3cdc50a095a12357e42d415b3e5546c2?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/d5251bebc1699793a698d1a6158603cb3cdc50a095a12357e42d415b3e5546c2?s=96&d=mm&r=g\",\"caption\":\"Irma Brillantes\"},\"url\":\"https:\/\/www.otava.com\/blog\/author\/ibrillantesotava-com\/\"}]}<\/script>\n<!-- \/ Yoast SEO Premium plugin. -->","yoast_head_json":{"title":"Recent Data Breaches Exemplify the Importance of PCI Compliance | OTAVA","description":"Strafor, the latest target of hackers, lost credit cardholder data in December that was released to the public later that month.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.otava.com\/blog\/recent-data-breaches-affect-pci-compliance\/","og_locale":"en_US","og_type":"article","og_title":"Recent Data Breaches Exemplify the Importance of PCI Compliance","og_description":"Strafor, the latest target of hackers, lost credit cardholder data in December that was released to the public later that month.","og_url":"https:\/\/www.otava.com\/blog\/recent-data-breaches-affect-pci-compliance\/","og_site_name":"OTAVA","article_published_time":"2012-01-17T00:00:00+00:00","og_image":[{"url":"https:\/\/www.otava.com\/wp-content\/uploads\/2019\/04\/PCI-Requirements.png","type":"","width":"","height":""}],"author":"Irma Brillantes","twitter_card":"summary_large_image","twitter_misc":{"Written by":"Irma Brillantes","Est. reading time":"2 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.otava.com\/blog\/recent-data-breaches-affect-pci-compliance\/#article","isPartOf":{"@id":"https:\/\/www.otava.com\/blog\/recent-data-breaches-affect-pci-compliance\/"},"author":{"name":"Irma Brillantes","@id":"https:\/\/www.otava.com\/#\/schema\/person\/35774075f8f4fcdd4eae80cb72034263"},"headline":"Recent Data Breaches Exemplify the Importance of PCI Compliance","datePublished":"2012-01-17T00:00:00+00:00","mainEntityOfPage":{"@id":"https:\/\/www.otava.com\/blog\/recent-data-breaches-affect-pci-compliance\/"},"wordCount":493,"commentCount":0,"publisher":{"@id":"https:\/\/www.otava.com\/#organization"},"image":{"@id":"https:\/\/www.otava.com\/blog\/recent-data-breaches-affect-pci-compliance\/#primaryimage"},"thumbnailUrl":"https:\/\/www.otava.com\/wp-content\/uploads\/2019\/04\/PCI-Requirements.png","inLanguage":"en-US","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/www.otava.com\/blog\/recent-data-breaches-affect-pci-compliance\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/www.otava.com\/blog\/recent-data-breaches-affect-pci-compliance\/","url":"https:\/\/www.otava.com\/blog\/recent-data-breaches-affect-pci-compliance\/","name":"Recent Data Breaches Exemplify the Importance of PCI Compliance | OTAVA","isPartOf":{"@id":"https:\/\/www.otava.com\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.otava.com\/blog\/recent-data-breaches-affect-pci-compliance\/#primaryimage"},"image":{"@id":"https:\/\/www.otava.com\/blog\/recent-data-breaches-affect-pci-compliance\/#primaryimage"},"thumbnailUrl":"https:\/\/www.otava.com\/wp-content\/uploads\/2019\/04\/PCI-Requirements.png","datePublished":"2012-01-17T00:00:00+00:00","description":"Strafor, the latest target of hackers, lost credit cardholder data in December that was released to the public later that month.","breadcrumb":{"@id":"https:\/\/www.otava.com\/blog\/recent-data-breaches-affect-pci-compliance\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.otava.com\/blog\/recent-data-breaches-affect-pci-compliance\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.otava.com\/blog\/recent-data-breaches-affect-pci-compliance\/#primaryimage","url":"https:\/\/www.otava.com\/wp-content\/uploads\/2019\/04\/PCI-Requirements.png","contentUrl":"https:\/\/www.otava.com\/wp-content\/uploads\/2019\/04\/PCI-Requirements.png"},{"@type":"BreadcrumbList","@id":"https:\/\/www.otava.com\/blog\/recent-data-breaches-affect-pci-compliance\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.otava.com\/"},{"@type":"ListItem","position":2,"name":"Recent Data Breaches Exemplify the Importance of PCI Compliance"}]},{"@type":"WebSite","@id":"https:\/\/www.otava.com\/#website","url":"https:\/\/www.otava.com\/","name":"OTAVA\u00ae","description":"","publisher":{"@id":"https:\/\/www.otava.com\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.otava.com\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.otava.com\/#organization","name":"OTAVA\u00ae","url":"https:\/\/www.otava.com\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.otava.com\/#\/schema\/logo\/image\/","url":"https:\/\/www.otava.com\/wp-content\/uploads\/2025\/03\/otava-logo.svg","contentUrl":"https:\/\/www.otava.com\/wp-content\/uploads\/2025\/03\/otava-logo.svg","caption":"OTAVA\u00ae"},"image":{"@id":"https:\/\/www.otava.com\/#\/schema\/logo\/image\/"}},{"@type":"Person","@id":"https:\/\/www.otava.com\/#\/schema\/person\/35774075f8f4fcdd4eae80cb72034263","name":"Irma Brillantes","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/d5251bebc1699793a698d1a6158603cb3cdc50a095a12357e42d415b3e5546c2?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/d5251bebc1699793a698d1a6158603cb3cdc50a095a12357e42d415b3e5546c2?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/d5251bebc1699793a698d1a6158603cb3cdc50a095a12357e42d415b3e5546c2?s=96&d=mm&r=g","caption":"Irma Brillantes"},"url":"https:\/\/www.otava.com\/blog\/author\/ibrillantesotava-com\/"}]}},"_links":{"self":[{"href":"https:\/\/www.otava.com\/wp-json\/wp\/v2\/posts\/1729","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.otava.com\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.otava.com\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.otava.com\/wp-json\/wp\/v2\/users\/3"}],"replies":[{"embeddable":true,"href":"https:\/\/www.otava.com\/wp-json\/wp\/v2\/comments?post=1729"}],"version-history":[{"count":0,"href":"https:\/\/www.otava.com\/wp-json\/wp\/v2\/posts\/1729\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.otava.com\/wp-json\/wp\/v2\/media?parent=1729"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.otava.com\/wp-json\/wp\/v2\/categories?post=1729"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.otava.com\/wp-json\/wp\/v2\/tags?post=1729"},{"taxonomy":"other_category","embeddable":true,"href":"https:\/\/www.otava.com\/wp-json\/wp\/v2\/other_category?post=1729"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}