Welcome

Thank you for visiting paducahsun.com, the online home of The Paducah Sun.

Calendar
June 2012
S M T W T F S
27 28 29 30 31 01 02

Click here to submit an event.

Target: Encrypted PINS should be safe

By MAE ANDERSON Associated Press

ATLANTA  - Target says that debit-card PINs were among the financial information stolen from millions of customers who shopped at the retailer earlier this month.

The company said the stolen personal identification numbers, which customers type into keypads to make secure transactions, were encrypted and that this strongly reduces risk to customers. In addition to the encrypted PINs, customer names, credit and debit card numbers, card expiration dates and the embedded code on the magnetic strip on back of the cards were stolen from about 40 million credit and debit cards used at Target stores between Nov. 27 and Dec. 15.

Security analysts say it's the second-largest theft of card accounts in U.S. history, surpassed only by a scam that began in 2005 involving retailer TJX Cos.

"We remain confident that PIN numbers are safe and secure," spokeswoman Molly Snyder said in an emailed statement Friday. "The PIN information was fully encrypted at the keypad, remained encrypted within our system, and remained encrypted when it was removed from our systems."

However, Gartner security analyst Avivah Litan said Friday that the PIN numbers for the affected cards are vulnerable and people should change their codes since such data has been decrypted, or unlocked, before. In 2009 computer hacker Albert Gonzalez pleaded guilty to conspiracy, wire fraud and other charges after masterminding debit and credit card breaches in 2005 that targeted retailers such as T.J. Maxx, Barnes & Noble and OfficeMax.

Gonzalez's group was able to unlock encrypted data. Litan said changes have been made since then to make decrypting more difficult but "nothing is infallible."

"It's not impossible, not unprecedented (and) has been done before," she said.

Besides changing your PIN, Litan says shoppers should instead opt to use their signature to approve transactions because it is safer. Still, she said Target did "as much as could be reasonably expected" in this case.

"It's a leaky system to begin with," she said.

Credit card companies in the U.S. plan to replace magnetic strips with digital chips by the fall of 2015, a system already common in Europe and other countries that makes data theft more difficult.

Comments made about this article - 0 Total

Comment on this article

Your comment has been submitted for approval
captcha 65ade17c94f64757a9c810e8e514a1b6
Top Classifieds
  • PILLOWTOP Mattress Sets, NEW in plast ... Details
  • 2-2015 CMAMusic Fest Tickets June 11- ... Details
  • RUNNING, fixable, junk vehicles, equi ... Details
  • BASEMENT home- 550 Oak Valley Rd - Ma ... Details
  • 3BR/1BA brick home/3.8 acres, 2424 Gr ... Details
  • New Custom Homes Marshall Co. Low 2&a ... Details
  • SEEING is believing! Don't buy p ... Details
  • '01 Soft Tail Harley Excellent C ... Details
  • Nissan Rogue '12 SV AWD Loaded 3 ... Details
This Week In Photos
Most Popular
  1. Gem and Mineral Show coming June 6-7
  2. Woman charged in hit and run
  3. Brown: Sanders revival 'tarnishes' icon
  1. State's largest Kroger to open in July
  2. Deputies seize paraphernalia, stolen property
  3. MCU perfecting repayment plan
  1. Paducah top Kentucky town for millennials
  2. Gem and Mineral Show coming June 6-7
  3. Woman charged in hit and run
Discussion

Check out these recently discussed stories and voice your opinion...