This incident has 0 proposed changes. Know of details that have changed? Submit them Showing Incident 15 To_xml

SUMMARY

"Oh, this is nothing..."
Records Unknown
Record Types CCN
Breach Type Hack, Hack
Data Family Electronic
Source Outside
Organization Egghead.com
Other Organizations None
Lawsuit? NO/UNKNOWN
Data Recovered? NO/UNKNOWN
Arrest? NO/UNKNOWN
Submitted By: Anonymous

TIMELINE

DateEvent
None. Add Data Incident Occurred
None. Add Data Incident Discovered By Organization
2000-12-23 Organization Reports Incident
None. Add Data Organization Mails Notifications
None. Add Data Records Recovered
None. Add Data Lawsuit Filed
None. Add Data Arrest Made

SIMILAR INCIDENTS

recordsdateorganizations
0 2007-02-19 Stop & Shop
0 2007-05-21 Columbia Bank (NJ)
0 2007-10-28 Art.com
0 2008-01-25 OmniAmerican Bank

MAP OF INCIDENT LOCATION

Address: USA
Have a better address for this incident? Suggest it!

suggest a new reference

REFERENCES

suggest a new attachment

ATTACHMENTS

COMMENTS

by Anonymous on 2009-01-23 (about 1 year ago)

The problem I see is Heartland is being anything but transparent. Releasing the story on inaugural day, and stating "people aren't really at risk." What that statement seems to ignore is data pirates can and do combine artifacts assembled from disparate origin, and it would be a trove to have millions of CC to cross-match against existing partial CC stolen from elsewhere, or existing names, etc. Heartland must be compelled to release the merchant names involved, so the issue can be fully addressed by all involved, not least of which is the public who may be impacted. Finally, any data incident found by 'anomalous billing patterns' is pretty much assured to have been missed by existing method of detection, and heartland has nothing to be proud of in that area either. Visa told them, not the other way around. I want to see heartland held to a higher standard than they are attempting to hold themselves to.

New Comment

simple_captcha.jpg
(type the code from the image)

Sponsored By: Credant_200x51 Tenable Pgp_logo Zecurion
Permission is granted to use this database in non-profit works and research. Use of the DataLossDB, and its exports, RSS feeds, reports, or other materials produced on this site by the Open Security Foundation for commercial interests requires authorization and licensing arrangements. For more information, please e-mail curators@datalossdb.org with a brief summary of how you would like to use this information; product, service, research, etc.
© 2005 - 2010, Open Security Foundation, All Rights Reserved.