{"id":46,"date":"2016-01-23T21:17:26","date_gmt":"2016-01-24T03:17:26","guid":{"rendered":"http:\/\/pcmdx.net\/blog\/?p=46"},"modified":"2016-01-23T21:35:58","modified_gmt":"2016-01-24T03:35:58","slug":"your-credit-card-got-hacked-how-did-it-happen","status":"publish","type":"post","link":"http:\/\/pcmdx.net\/blog\/2016\/01\/23\/your-credit-card-got-hacked-how-did-it-happen\/","title":{"rendered":"Your credit card got hacked&#8230;how did it happen?"},"content":{"rendered":"<p>We read every day stories about people&#8217;s credit cards that were &#8220;hacked&#8221;. \u00a0We put the word hacked in quotes because it&#8217;s really not the correct term. \u00a0The better word is breached.<\/p>\n<p>Regardless of the what you call it, the bad guys got your credit card number and now you have to jump through a bunch of hoops in order to fix it, from calling the credit card provider, to looking over your statements to see where all the bad guys used your card.<\/p>\n<p>But how did you get here? \u00a0Where did the bad guys get your card? \u00a0When did it happen? \u00a0What method did they use?<\/p>\n<p>First thing&#8217;s first. \u00a0It most likely <span style=\"text-decoration: underline;\">didn&#8217;t happen recently<\/span>. \u00a0Unless you lost your card, chances are your card was compromised weeks, if not months ago. \u00a0So don&#8217;t blame the last place that you used your card. \u00a0Not only did they probably not have anything to do with it, but you&#8217;re also making possibly a slanderous statement against that company and could find yourself in legal trouble.<\/p>\n<p>The card may have been compromised at a merchant who was not <strong><a href=\"http:\/\/krebsonsecurity.com\/2015\/01\/how-was-your-credit-card-stolen\/\" target=\"_blank\">PCI Compliant<\/a><\/strong>, a requirement for any merchant who takes credit cards. \u00a0Unfortunately, many merchants don&#8217;t have a clue that they need to be compliant, or under the assumption that they already are, based on wrong information they are receiving from their credit card processor. \u00a0Here&#8217;s some simple facts:<\/p>\n<ul>\n<li>\u00a0 <em>No breach has ever occurred at a merchant who was 100% PCI Compliant.<\/em><\/li>\n<li>\u00a0<em>All breaches that have occurred were at merchants who were not PCI Compliant. \u00a0<\/em><\/li>\n<\/ul>\n<p>The card may have been breached at a gas station or ATM that had a skimmer installed. \u00a0 This method collects card information for a period of weeks or months. \u00a0<a href=\"http:\/\/www.al.com\/news\/birmingham\/index.ssf\/2015\/12\/hoover_police_say_2_women_spen.html\" target=\"_blank\">The bad guys (and girls)<\/a> then take the numbers and encode them on pre-paid credit cards they purchase at a drug store, and go on shopping sprees. \u00a0The length of time between the skimmed cards and the using of the accounts could be a few months.<\/p>\n<p>Banks have become smarter when it comes to compromised accounts. \u00a0Many years ago when a card was compromised, the victim would find charges that were made in other states or even other countries. \u00a0Today, if there&#8217;s suspicious activity on an account, often times the bank will call the account holder and ask them if they are in another state. \u00a0If they are not, they will not authorize the transaction.<\/p>\n<p>Because the banks are now monitoring accounts, the bad guys are adapting. \u00a0Usually, if a card holder is based in a particular ZIP code, the bad guys will harvest all of the account numbers for that area, then descend on that area and begin to use the compromised accounts in that area. \u00a0That raises less suspicion with the banks. \u00a0However, the time between the breach and the using of the account can be weeks or months.<\/p>\n<p><a href=\"http:\/\/krebsonsecurity.com\/2015\/01\/how-was-your-credit-card-stolen\/\" target=\"_blank\">Here&#8217;s a great article<\/a> that gives you a very detailed view on credit card breaches.<\/p>\n<p>If you&#8217;re a merchant who takes credit cards and are not sure if you&#8217;re PCI Compliant, contact PC Medics of Alabama today at 205-201-0389 or via e-mail a info@pcmdx.net for a free consultation. \u00a0Our PCI Compliance experts will go over your network and give you recommendations on how to become compliant.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>We read every day stories about people&#8217;s credit cards that were &#8220;hacked&#8221;. \u00a0We put the word hacked in quotes because it&#8217;s really not the correct term. \u00a0The better word is breached. Regardless of the what you call it, the bad guys got your credit card number and now you have to jump through a bunch [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[15,7,21],"tags":[],"class_list":["post-46","post","type-post","status-publish","format-standard","hentry","category-data-security","category-hack-prevention","category-pci-compliance"],"_links":{"self":[{"href":"http:\/\/pcmdx.net\/blog\/wp-json\/wp\/v2\/posts\/46","targetHints":{"allow":["GET"]}}],"collection":[{"href":"http:\/\/pcmdx.net\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/pcmdx.net\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/pcmdx.net\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"http:\/\/pcmdx.net\/blog\/wp-json\/wp\/v2\/comments?post=46"}],"version-history":[{"count":2,"href":"http:\/\/pcmdx.net\/blog\/wp-json\/wp\/v2\/posts\/46\/revisions"}],"predecessor-version":[{"id":50,"href":"http:\/\/pcmdx.net\/blog\/wp-json\/wp\/v2\/posts\/46\/revisions\/50"}],"wp:attachment":[{"href":"http:\/\/pcmdx.net\/blog\/wp-json\/wp\/v2\/media?parent=46"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/pcmdx.net\/blog\/wp-json\/wp\/v2\/categories?post=46"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/pcmdx.net\/blog\/wp-json\/wp\/v2\/tags?post=46"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}