article thumbnail

Unencrypted Vistaprint Database Exposed Personal Customer Data

PYMNTS

Printing company Vistaprint left an online database containing customer interactions unencrypted, according to a report. A security researcher named Oliver Hough discovered the unprotected database on Nov. After the report was published, the company quietly took down the database.

article thumbnail

American Express India Database Accessible To Anyone In October

PYMNTS

American Express India enabled a database to be accessible to anyone for longer than five days in October, according to a report in The Next Web. According to the report , the Hacken cyber consultancy team’s director of cyber risk research, Bob Diachenko, discovered the unprotected database on Oct. 20, but potentially even longer.

article thumbnail

Data Breaches 101: What They Are And How To Prevent Them

VISTA InfoSec

Encrypt Data Flows Implement encryption for data in transit over networks and at rest within databases/servers to ensure meaningless ciphertext even if intercepted.

article thumbnail

JCrush’s Open Database Exposes 200K User Records

PYMNTS

The app, designed for the Jewish community, left the database open without a password, exposing user data and private messages, said security researchers Noam Rotem and Ran Locar, according to reports. In addition, none of the data was encrypted. Dating app JCrush potentially exposed the records of around 200,000 users.

article thumbnail

PCI DSS Requirement 3 – Changes from v3.2.1 to v4.0 Explained

VISTA InfoSec

This is achieved through a multi-pronged approach: Data Encryption: Requirement 3 mandates the use of strong cryptographic controls such as encryption for stored cardholder data. Key Management: Requirement 3 also covers the secure management of cryptographic keys used for encryption of cardholder data. PCI DSS v4.0

PCI DSS 100
article thumbnail

PCI DSS Checklist: Secure Your Business

VISTA InfoSec

Protect Stored Cardholder Data: PCI DSS Requirement 3 reduces risks of storing sensitive data by using encryption, truncation, masking and hashing to protect cardholder data from hackers; thereby ensuring compliance with regulations. Hackers target data in transit, making it important to implement safeguards and encryption measures.

PCI DSS 130
article thumbnail

TrueDialog SMS Provider Leaks Millions Of Business Texts

PYMNTS

An exposed database run by TrueDialog revealed millions of SMS text messages, according to published reports on Sunday (Dec. The exposed database, which contained years of sent and received text messages, wasn’t password protected or encrypted. Vistaprint spokesman Robert Crosland said customers in the U.S.,