<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Endpoint Security Info &#187; security breach</title>
	<atom:link href="http://www.endpoint-security.info/tag/security-breach/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.endpoint-security.info</link>
	<description>Endpoint Security in the News. Learn to protect your data by controlling removable storage devices.</description>
	<lastBuildDate>Thu, 02 Feb 2012 10:58:16 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.2.1</generator>
		<item>
		<title>Stolen laptop and flash drive expose 7,000 to data theft</title>
		<link>http://www.endpoint-security.info/2012/02/01/stolen-laptop-and-flash-drive-expose-7000-to-data-theft/</link>
		<comments>http://www.endpoint-security.info/2012/02/01/stolen-laptop-and-flash-drive-expose-7000-to-data-theft/#comments</comments>
		<pubDate>Wed, 01 Feb 2012 12:59:17 +0000</pubDate>
		<dc:creator>Agent Smith</dc:creator>
				<category><![CDATA[Data Theft & Loss]]></category>
		<category><![CDATA[Identity Theft]]></category>
		<category><![CDATA[data theft]]></category>
		<category><![CDATA[Kansas Department of Aging]]></category>
		<category><![CDATA[security breach]]></category>
		<category><![CDATA[stolen flash drive]]></category>
		<category><![CDATA[stolen laptop]]></category>

		<guid isPermaLink="false">http://www.endpoint-security.info/?p=841</guid>
		<description><![CDATA[The Kansas Department on Aging has recently reported a hardware theft that caused a data breach affecting about 7,000 of its customers. A laptop, a flash drive and paper files were stolen out of an employee’s vehicle, putting thousands of senior customers at risk. The stolen files contained personal and protected health information belonging mainly [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.endpoint-security.info%2F2012%2F02%2F01%2Fstolen-laptop-and-flash-drive-expose-7000-to-data-theft%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.endpoint-security.info%2F2012%2F02%2F01%2Fstolen-laptop-and-flash-drive-expose-7000-to-data-theft%2F&amp;source=cososys&amp;style=normal&amp;b=2" height="61" width="50" /><br />
			</a>
		</div>
<p>The Kansas Department on Aging has recently reported a hardware theft that caused a <a href="http://www.kwch.com/kwch-news-kah-personal-information-stolen-from-ks-department-of-aging-20120119,0,7125622.story" target="_blank">data breach affecting about 7,000 of its customers</a>. A laptop, a flash drive and paper files were stolen out of an employee’s vehicle, putting thousands of senior customers at risk.</p>
<p>The stolen files contained personal and protected health information belonging mainly to customers located in Sedgwick, Harvey, and Butler counties. The theft was immediately reported to the Wichita Police Department. The Kansas Department on Aging says it is cooperating with the police, but the stolen hardware has not yet been recovered.<span id="more-841"></span></p>
<p>Fortunately, there is no evidence to indicate that the information has been accessed and misused. The stolen data and documents may include full customer names, complete addresses, dates of birth, social security numbers, gender, in home services program participation information, Medicaid identification numbers, case management location and case manager names and telephone numbers.  No banking, credit card, or driver license information was stored on the stolen devices.</p>
<p>The Kansas Department of Aging has confirmed that at least 100 customers have had their Social Security Numbers stolen and trying to inform those affected through phone calls. They will further notify everyone affected by the breach through letters explaining the situation.</p>
<blockquote><p>&#8220;We are immediately reviewing policies and procedures relevant to information security, especially for those employees whose duties require travel off-site to prevent a similar situation from recurring,&#8221; stated Secretary Shawn Sullivan of the Department on Aging.</p></blockquote>
<p>The Department of Aging also advised their customers to contact their banks and credit card companies and let them know they are victims of a data theft, prompting them to keep an eye on any suspicious activity in the following months.</p>
<div id="crp_related"><h3>Related Posts:</h3><ul><li><a href="http://www.endpoint-security.info/2011/06/20/hacks-and-stolen-hardware-top-data-breach-causes/" rel="bookmark" class="crp_title">Hacks and Stolen Hardware, Top Data Breach Causes</a></li><li><a href="http://www.endpoint-security.info/2008/04/27/credit-cart-info-of-wisebuy-customers-stolen/" rel="bookmark" class="crp_title">Credit Card Info of WiseBuy Customers Stolen</a></li><li><a href="http://www.endpoint-security.info/2008/08/12/stolen-flash-drive-with-personal-info-on-2600-delphi-workers/" rel="bookmark" class="crp_title">Stolen Flash Drive with Personal Info on 2,600 Delphi Workers</a></li><li><a href="http://www.endpoint-security.info/2011/03/16/hard-drive-with-private-information-of-nearly-90000-students-missing/" rel="bookmark" class="crp_title">Hard drive with private information of nearly 90,000 students missing</a></li><li><a href="http://www.endpoint-security.info/2011/01/03/stolen-laptop-jeopardizes-more-than-3000-patients/" rel="bookmark" class="crp_title">Stolen laptop jeopardizes more than 3000 patients</a></li></ul></div>]]></content:encoded>
			<wfw:commentRss>http://www.endpoint-security.info/2012/02/01/stolen-laptop-and-flash-drive-expose-7000-to-data-theft/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Zappos and Amazon face consequences of data breach</title>
		<link>http://www.endpoint-security.info/2012/01/24/zappos-and-amazon-face-consequences-of-data-breach/</link>
		<comments>http://www.endpoint-security.info/2012/01/24/zappos-and-amazon-face-consequences-of-data-breach/#comments</comments>
		<pubDate>Tue, 24 Jan 2012 19:27:33 +0000</pubDate>
		<dc:creator>Agent Smith</dc:creator>
				<category><![CDATA[Data Theft & Loss]]></category>
		<category><![CDATA[Identity Theft]]></category>
		<category><![CDATA[In the News]]></category>
		<category><![CDATA[Amazon]]></category>
		<category><![CDATA[credit card information]]></category>
		<category><![CDATA[data breach]]></category>
		<category><![CDATA[Data Loss]]></category>
		<category><![CDATA[hacker attach]]></category>
		<category><![CDATA[lawsuit]]></category>
		<category><![CDATA[negligence]]></category>
		<category><![CDATA[security breach]]></category>
		<category><![CDATA[Zappos]]></category>

		<guid isPermaLink="false">http://www.endpoint-security.info/?p=834</guid>
		<description><![CDATA[When you are the lead artist of a security mishaps that ended up in a data breach affecting some 24 million people, consequences are bound to catch up with you. And they just have caught up with shoe retailer Zappos.com and the bigger online fish behind them, Amazon.com. The two companies are being sued by [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.endpoint-security.info%2F2012%2F01%2F24%2Fzappos-and-amazon-face-consequences-of-data-breach%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.endpoint-security.info%2F2012%2F01%2F24%2Fzappos-and-amazon-face-consequences-of-data-breach%2F&amp;source=cososys&amp;style=normal&amp;b=2" height="61" width="50" /><br />
			</a>
		</div>
<p>When you are the lead artist of a security mishaps that ended up in a data breach affecting some 24 million people, consequences are bound to catch up with you. And they just have caught up with shoe retailer Zappos.com and the bigger online fish behind them, Amazon.com. <a href="http://www.darkreading.com/authentication/167901072/security/privacy/232500341/zappos-amazon-sued-over-data-breach.html" target="_blank">The two companies are being sued by the customers affected by the data breach</a>, being accused of negligence.</p>
<p>A woman from Texas seems to be the main promoter in this Kentucky lawsuit. She claims that she and millions of other customers were harmed by the exposure of their personal account information. Zappos and Amazon have not commented on the lawsuit as of earlier today. <span id="more-834"></span></p>
<p>The Zappos data breach was made public on Sunday when the company emailed employees and customers to let them know that names, phone numbers and email addresses of customers might have been accessed in a hacker attack.  The same statement reassured them that credit card and payment information had not been stolen. Zappos also advised its customers to reset account passwords on their site and any other sites where similar passwords were being used.</p>
<p>The attorneys of the Texas woman are seeking class-action status on behalf of the 24 million affected customers, claiming the security breach was actually a violation of the federal Fair Credit Reporting Act. The sum the lawsuit seeks has not been specified, but it is in the range of millions of dollars in compensatory and exemplary damages for emotional distress and loss of privacy. It also seeks to have Zappos court-ordered to pay for credit monitoring and identity theft insurance, plus periodic audits, for all those affected by the data breach.</p>
<p>&nbsp;</p>
<div id="crp_related"><h3>Related Posts:</h3><ul><li><a href="http://www.endpoint-security.info/2010/11/01/one-million-pay-for-citibank-credit-card-account-theft/" rel="bookmark" class="crp_title">Court orders one million pay restitution for Citibank credit card accounts theft</a></li><li><a href="http://www.endpoint-security.info/2008/06/29/montgomery-ward-kept-customers-in-the-dark-on-data-theft/" rel="bookmark" class="crp_title">Montgomery Ward Kept Customers in the Dark on Data Theft</a></li><li><a href="http://www.endpoint-security.info/2009/02/04/tjx-sale-for-data-brech/" rel="bookmark" class="crp_title">TJX finds closure for breach in big time sale</a></li><li><a href="http://www.endpoint-security.info/2012/01/26/data-breach-exposes-records-of-1-8-million-new-york-utilities-customers/" rel="bookmark" class="crp_title">Data breach exposes records of 1.8 million New York utilities customers</a></li><li><a href="http://www.endpoint-security.info/2011/07/28/hackers-will-always-have-their-stolen-data/" rel="bookmark" class="crp_title">Hackers will always have their stolen data</a></li></ul></div>]]></content:encoded>
			<wfw:commentRss>http://www.endpoint-security.info/2012/01/24/zappos-and-amazon-face-consequences-of-data-breach/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Security audit reveals Department of Taxation internal breaches</title>
		<link>http://www.endpoint-security.info/2011/12/18/security-audit-reveals-department-of-taxation-internal-breaches/</link>
		<comments>http://www.endpoint-security.info/2011/12/18/security-audit-reveals-department-of-taxation-internal-breaches/#comments</comments>
		<pubDate>Sun, 18 Dec 2011 08:00:34 +0000</pubDate>
		<dc:creator>Agent Smith</dc:creator>
				<category><![CDATA[DLP]]></category>
		<category><![CDATA[endpoint security]]></category>
		<category><![CDATA[compromised database]]></category>
		<category><![CDATA[DOTAX]]></category>
		<category><![CDATA[Hawaii DOTAX]]></category>
		<category><![CDATA[internal breach]]></category>
		<category><![CDATA[security audit]]></category>
		<category><![CDATA[security breach]]></category>
		<category><![CDATA[state department]]></category>

		<guid isPermaLink="false">http://www.endpoint-security.info/?p=819</guid>
		<description><![CDATA[The US Department of Taxation (DOTAX) decided to take a closer look at how their systems work this year. The process of evaluation included a security audit which lead to discovering internal security breaches dating back to 2008. DOTAX celebrated the three years of undiscovered breaches by putting employees of the Hawaii DOTAX on administrative [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.endpoint-security.info%2F2011%2F12%2F18%2Fsecurity-audit-reveals-department-of-taxation-internal-breaches%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.endpoint-security.info%2F2011%2F12%2F18%2Fsecurity-audit-reveals-department-of-taxation-internal-breaches%2F&amp;source=cososys&amp;style=normal&amp;b=2" height="61" width="50" /><br />
			</a>
		</div>
<p>The US Department of Taxation (DOTAX) decided to take a closer look at how their systems work this year. The process of evaluation included a security audit which lead to <a href="http://mauinow.com/2011/12/15/department-of-taxation-security-audit-leads-to-investigation/" target="_blank">discovering internal security breaches dating back to 2008</a>. DOTAX celebrated the three years of undiscovered breaches by putting employees of the Hawaii DOTAX on administrative leave without pay and starting a comprehensive investigation.</p>
<p style="text-align: center;"><a href="http://endpointprotector.com"><img class="aligncenter" style="border-style: initial; border-color: initial; border-image: initial; border-width: 0px;" title="Device Control for Windows and Mac" src="/wp-content/uploads/banners_2011/en-336x280.jpg" alt="Device Control for Windows and Mac" width="336" height="280" align="middle" border="0" /></a></p>
<p>The breaches affected the Department’s computer tax database but no one knows when they occurred, it is suspected they happened at least as far back as 2008.The discovered incidents were immediately turned over to the Department of the Attorney General for review and investigation.<span id="more-819"></span></p>
<blockquote><p>“Protecting the integrity of tax records is a serious matter,” said Fred Pablo, the state tax director, in a written statement. “The possibility of wrongful actions are extremely disturbing, which is why these matters were immediately reported to the Attorney General.”</p></blockquote>
<p>Other than announcing some of their staff were put on administrative leave, DOTAX did not release any other details on the investigation, stating they would only do so after it had been completed.  We look forward to that moment to know how many people have been affected and what kind of protection they will receive.</p>
<div id="crp_related"><h3>Related Posts:</h3><ul><li><a href="http://www.endpoint-security.info/2011/10/24/spectrum-data-theft/" rel="bookmark" class="crp_title">Spectrum Health Client Data Stolen With Hard Drive</a></li><li><a href="http://www.endpoint-security.info/2011/06/29/employee-goe-home-with-9000-records-of-coworkers/" rel="bookmark" class="crp_title">Employee goes home with 9,000 records of coworkers</a></li><li><a href="http://www.endpoint-security.info/2008/09/06/2008-sky-is-the-limit-for-us-data-breaches/" rel="bookmark" class="crp_title">2008: Sky is the Limit for US Data Breaches</a></li><li><a href="http://www.endpoint-security.info/2011/04/07/93500-midstate-medical-center-patients-affected-by-data-breach/" rel="bookmark" class="crp_title">93,500 MidState Medical Center patients affected by data breach</a></li><li><a href="http://www.endpoint-security.info/2011/08/01/short-data-breach-disclosure-windows-potentially-damaging-to-consumers/" rel="bookmark" class="crp_title">Short Data Breach Disclosure Windows, Potentially Damaging to Consumers</a></li></ul></div>]]></content:encoded>
			<wfw:commentRss>http://www.endpoint-security.info/2011/12/18/security-audit-reveals-department-of-taxation-internal-breaches/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Steam hit by hackers. Are all their 35 million user accounts breached?</title>
		<link>http://www.endpoint-security.info/2011/11/14/steam-hit-by-hackers-are-all-their-35-million-user-accounts-breached/</link>
		<comments>http://www.endpoint-security.info/2011/11/14/steam-hit-by-hackers-are-all-their-35-million-user-accounts-breached/#comments</comments>
		<pubDate>Mon, 14 Nov 2011 10:29:23 +0000</pubDate>
		<dc:creator>Agent Smith</dc:creator>
				<category><![CDATA[Data Theft & Loss]]></category>
		<category><![CDATA[Identity Theft]]></category>
		<category><![CDATA[security breach]]></category>
		<category><![CDATA[credit cards]]></category>
		<category><![CDATA[customer database]]></category>
		<category><![CDATA[exposed user accounts]]></category>
		<category><![CDATA[gaming]]></category>
		<category><![CDATA[hacking]]></category>
		<category><![CDATA[private records]]></category>
		<category><![CDATA[Steam]]></category>
		<category><![CDATA[Valve]]></category>

		<guid isPermaLink="false">http://www.endpoint-security.info/?p=806</guid>
		<description><![CDATA[Almost two weeks ago, we revealed the major changes that had happened this year in the major data breaches top of all times. 2011 was leading in what the number of high profile of breaches is concerned. The top might change once more, ensuring an even stronger position for the current year as hackers hit [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.endpoint-security.info%2F2011%2F11%2F14%2Fsteam-hit-by-hackers-are-all-their-35-million-user-accounts-breached%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.endpoint-security.info%2F2011%2F11%2F14%2Fsteam-hit-by-hackers-are-all-their-35-million-user-accounts-breached%2F&amp;source=cososys&amp;style=normal&amp;b=2" height="61" width="50" /><br />
			</a>
		</div>
<p>Almost two weeks ago, we revealed the <a href="http://www.endpoint-security.info/2011/11/01/2011-brings-major-changes-in-the-biggest-data-breaches-of-all-times-top/" target="_blank">major changes that had happened this year in the major data breaches top of all times</a>. 2011 was leading in what the number of high profile of breaches is concerned. The top might change once more, ensuring an even stronger position for the current year as <a href="http://www.darkreading.com/database-security/167901020/security/attacks-breaches/231902879/hackers-crack-steam-database.html" target="_blank">hackers hit Steam</a>, a gaming giant that is home to 35 million user accounts.</p>
<p>What we know so far is that the Steam customer data base has been indeed accessed by hackers.</p>
<blockquote><p>&#8220;We learned that intruders obtained access to a Steam database in addition to the forums,&#8221;  said Gabe Newell, co-founder and managing director of Steam parent company Valve. &#8220;This database contained information including user names, hashed and salted passwords, game purchases, email addresses, billing addresses and encrypted credit card information.&#8221;</p></blockquote>
<p><span id="more-806"></span></p>
<p>While the most sensitive account information was encrypted and there is no evidence that the hackers stole any of the details in the database or that they attempted to misuse any credit cards, Valve advises users to keep a close eye on credit card activity for the time being.</p>
<blockquote><p>&#8220;We do not know of any compromised Steam accounts, so we are not planning to force a change of Steam account passwords, which are separate from forum passwords,&#8221; Newell&#8217;s statement explains. &#8220;However, it wouldn’t be a bad idea to change that as well.&#8221;</p></blockquote>
<p>Let&#8217;s all keep our fingers crossed and hope only a few forum accounts have been compromised and the 35 million records are safe.</p>
<div id="crp_related"><h3>Related Posts:</h3><ul><li><a href="http://www.endpoint-security.info/2011/07/28/hackers-will-always-have-their-stolen-data/" rel="bookmark" class="crp_title">Hackers will always have their stolen data</a></li><li><a href="http://www.endpoint-security.info/2011/04/28/sony-playstation-hack/" rel="bookmark" class="crp_title">Sony’s PlayStation Network Hack Created 70 Million Potential Fraud Victims</a></li><li><a href="http://www.endpoint-security.info/2011/09/05/are-hackers-going-to-be-this-year%e2%80%99s-top-news-item/" rel="bookmark" class="crp_title">Are Hackers Going to Be This Year’s Top News Item?</a></li><li><a href="http://www.endpoint-security.info/2011/06/03/hackers-target-sony-once-more-thousands-of-customer-records-exposed/" rel="bookmark" class="crp_title">Hackers Target Sony Once More, Thousands of Customer Records Exposed</a></li><li><a href="http://www.endpoint-security.info/2011/06/22/whos-the-next-big-gaming-company-to-be-hacked/" rel="bookmark" class="crp_title">Who&#8217;s the Next Big Gaming Company to Be Hacked?</a></li></ul></div>]]></content:encoded>
			<wfw:commentRss>http://www.endpoint-security.info/2011/11/14/steam-hit-by-hackers-are-all-their-35-million-user-accounts-breached/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>2011 Brings Major Changes in the Biggest Data Breaches of All Times Top</title>
		<link>http://www.endpoint-security.info/2011/11/01/2011-brings-major-changes-in-the-biggest-data-breaches-of-all-times-top/</link>
		<comments>http://www.endpoint-security.info/2011/11/01/2011-brings-major-changes-in-the-biggest-data-breaches-of-all-times-top/#comments</comments>
		<pubDate>Tue, 01 Nov 2011 08:41:51 +0000</pubDate>
		<dc:creator>Agent Smith</dc:creator>
				<category><![CDATA[Data Theft & Loss]]></category>
		<category><![CDATA[endpoint security]]></category>
		<category><![CDATA[security breach]]></category>
		<category><![CDATA[Data Loss]]></category>
		<category><![CDATA[data theft]]></category>
		<category><![CDATA[exposed data]]></category>
		<category><![CDATA[largest data breaches]]></category>
		<category><![CDATA[top data breaches]]></category>

		<guid isPermaLink="false">http://www.endpoint-security.info/?p=775</guid>
		<description><![CDATA[While data breaches are as common as any other daily occurrence in the business and individual worlds, the large security incidents don&#8217;t happen as often, especially if you think that one of the breaches in the top ten all time largest data exposures dates back to 1984. 2011 is not yet over and it already is [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.endpoint-security.info%2F2011%2F11%2F01%2F2011-brings-major-changes-in-the-biggest-data-breaches-of-all-times-top%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.endpoint-security.info%2F2011%2F11%2F01%2F2011-brings-major-changes-in-the-biggest-data-breaches-of-all-times-top%2F&amp;source=cososys&amp;style=normal&amp;b=2" height="61" width="50" /><br />
			</a>
		</div>
<p>While data breaches are as common as any other daily occurrence in the business and individual worlds, the large security incidents don&#8217;t happen as often, especially if you think that one of the breaches in the top ten all time largest data exposures dates back to 1984. 2011 is not yet over and it already is the poster child of this <a href="http://datalossdb.org/index/largest" target="_blank">top we all want to see unchanged</a>.</p>
<p>2011 is the only year with three major data loss incidents in the top ten: Sony Corporation with 77 million records exposed, SK Communications, Nate, Cyworld with 35 million and again Sony Corporation through their Sony Online Entertainment division with close to 25 million records exposed. Luckily for us, although it featured large incidents, 2011 did not create as many victims as 2009 with its two incidents, Heartland Payment Systems, Tower Federal Credit Union, Beverly National Bank which share the number one position in the infamous top with 130 million records exposed and RockYou Inc. with another 32 million. <span id="more-775"></span></p>
<p>Here&#8217;s the <a href="http://datalossdb.org/" target="_blank">ultimate data breach top</a>, the place where you never want to see your company&#8217;s name or that of any other company that has your data stored:</p>
<ol>
<li>Heartland Payment Systems, Tower Federal Credit Union, Beverly National Bank &#8211; 130 million records (2009)</li>
<li>TJX Companies Inc. &#8211; 94 million records (2007)</li>
<li>TRW, Sears Roebuck &#8211; 90 million records (1984)</li>
<li>Sony Corporation &#8211; 77 million records (2011)</li>
<li>CardSystems, Visa, MasterCard, American Express &#8211; 40 million records (2005)</li>
<li>SK Communications, Nate, Cyworld &#8211; 35 million records (2011)</li>
<li>RockYou Inc. &#8211; 32 million records (2009)</li>
<li>U.S. Department of Veterans Affairs &#8211; 26,5 million (2006)</li>
<li>HM Revenue and Customs, TNT &#8211; 25 million records (2007)</li>
<li>Sony Online Entertainment, Sony Corporation &#8211; 24,6 million (2011)</li>
</ol>
<div>For those of you who might still think hacking is fun and cool, 8 of these incidents were the result of hacking. Another two were caused by a stolen computer and a lost media storing private data. Let&#8217;s all hope nothing major happens in these last two months of 2011 and that this top remains unchanged for a long, very long time!</div>
<p>&nbsp;</p>
<div id="crp_related"><h3>Related Posts:</h3><ul><li><a href="http://www.endpoint-security.info/2011/08/16/june-the-month-with-the-most-data-breaches-of-2011-so-far/" rel="bookmark" class="crp_title">June, the month with the most data breaches of 2011 so far</a></li><li><a href="http://www.endpoint-security.info/2011/11/14/steam-hit-by-hackers-are-all-their-35-million-user-accounts-breached/" rel="bookmark" class="crp_title">Steam hit by hackers. Are all their 35 million user accounts breached?</a></li><li><a href="http://www.endpoint-security.info/2011/04/25/data-breaches-down-but-threat-still-real/" rel="bookmark" class="crp_title">Data Breaches Down, But Threat Still Real</a></li><li><a href="http://www.endpoint-security.info/2011/04/28/sony-playstation-hack/" rel="bookmark" class="crp_title">Sony’s PlayStation Network Hack Created 70 Million Potential Fraud Victims</a></li><li><a href="http://www.endpoint-security.info/2009/01/19/us-2008-data-breach-growth-blamed-on-insiders/" rel="bookmark" class="crp_title">US 2008 data breach growth blamed on insiders</a></li></ul></div>]]></content:encoded>
			<wfw:commentRss>http://www.endpoint-security.info/2011/11/01/2011-brings-major-changes-in-the-biggest-data-breaches-of-all-times-top/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Hackers Target Sony Once More, Thousands of Customer Records Exposed</title>
		<link>http://www.endpoint-security.info/2011/06/03/hackers-target-sony-once-more-thousands-of-customer-records-exposed/</link>
		<comments>http://www.endpoint-security.info/2011/06/03/hackers-target-sony-once-more-thousands-of-customer-records-exposed/#comments</comments>
		<pubDate>Fri, 03 Jun 2011 19:12:07 +0000</pubDate>
		<dc:creator>Agent Smith</dc:creator>
				<category><![CDATA[Data Theft & Loss]]></category>
		<category><![CDATA[Identity Theft]]></category>
		<category><![CDATA[security breach]]></category>
		<category><![CDATA[customer records]]></category>
		<category><![CDATA[hack]]></category>
		<category><![CDATA[LulzSec]]></category>
		<category><![CDATA[PBS breach]]></category>
		<category><![CDATA[privacy breach]]></category>
		<category><![CDATA[sony]]></category>
		<category><![CDATA[Sony hack]]></category>
		<category><![CDATA[stolen data]]></category>

		<guid isPermaLink="false">http://www.endpoint-security.info/?p=665</guid>
		<description><![CDATA[After the hacking of the PBS network website, Sony’s movie division website was also hacked and at least 50,000 consumer email addresses have published. A group called LulzSec has claimed responsibility for the attack and stated the security breach was made possible by an existing SQL vulnerability. &#8220;What&#8217;s worse is that every bit of data [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.endpoint-security.info%2F2011%2F06%2F03%2Fhackers-target-sony-once-more-thousands-of-customer-records-exposed%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.endpoint-security.info%2F2011%2F06%2F03%2Fhackers-target-sony-once-more-thousands-of-customer-records-exposed%2F&amp;source=cososys&amp;style=normal&amp;b=2" height="61" width="50" /><br />
			</a>
		</div>
<p>After the hacking of the PBS network website, <a href="http://www.theregister.co.uk/2011/06/03/sony_pictures_hacked/" target="_blank">Sony’s movie division website was also hacked</a> and at least 50,000 consumer email addresses have published. A group called LulzSec has claimed responsibility for the attack and stated the security breach was made possible by an existing SQL vulnerability.</p>
<blockquote><p>&#8220;What&#8217;s worse is that every bit of data we took wasn&#8217;t encrypted,&#8221; the group wrote in a press release announcing the hack. &#8220;Sony stored over 1,000,000 passwords of its customers in plaintext, which means it&#8217;s just a matter of taking it. This is disgraceful and insecure: they were asking for it.&#8221;<span id="more-665"></span></p></blockquote>
<p>The group published user names and hashed passwords for both Sony’s Fox.com and PBS administrators and users and posted a hoax story involving Tupac Shakur and Biggie Smalls. The number of hacked accounts from Sony alone is around 73.000.</p>
<p>For Sony this is only the latest of a series of attacks launched as a response to their <a href="http://www.theregister.co.uk/2011/01/14/no_playstation_hacker_order/">legal campaign</a> against people jailbreaking the PlayStation 3 game console.</p>
<div id="crp_related"><h3>Related Posts:</h3><ul><li><a href="http://www.endpoint-security.info/2011/04/28/sony-playstation-hack/" rel="bookmark" class="crp_title">Sony’s PlayStation Network Hack Created 70 Million Potential Fraud Victims</a></li><li><a href="http://www.endpoint-security.info/2011/08/16/june-the-month-with-the-most-data-breaches-of-2011-so-far/" rel="bookmark" class="crp_title">June, the month with the most data breaches of 2011 so far</a></li><li><a href="http://www.endpoint-security.info/2011/07/28/hackers-will-always-have-their-stolen-data/" rel="bookmark" class="crp_title">Hackers will always have their stolen data</a></li><li><a href="http://www.endpoint-security.info/2011/09/05/are-hackers-going-to-be-this-year%e2%80%99s-top-news-item/" rel="bookmark" class="crp_title">Are Hackers Going to Be This Year’s Top News Item?</a></li><li><a href="http://www.endpoint-security.info/2011/06/22/whos-the-next-big-gaming-company-to-be-hacked/" rel="bookmark" class="crp_title">Who&#8217;s the Next Big Gaming Company to Be Hacked?</a></li></ul></div>]]></content:encoded>
			<wfw:commentRss>http://www.endpoint-security.info/2011/06/03/hackers-target-sony-once-more-thousands-of-customer-records-exposed/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Stolen Laptop Could Contain Private Medical Data of 20,000 Individuals</title>
		<link>http://www.endpoint-security.info/2011/05/11/stolen-laptop-could-contain-private-medical-data-of-20000-individuals/</link>
		<comments>http://www.endpoint-security.info/2011/05/11/stolen-laptop-could-contain-private-medical-data-of-20000-individuals/#comments</comments>
		<pubDate>Wed, 11 May 2011 09:57:57 +0000</pubDate>
		<dc:creator>Agent Smith</dc:creator>
				<category><![CDATA[Data Theft & Loss]]></category>
		<category><![CDATA[lost data]]></category>
		<category><![CDATA[medical reports]]></category>
		<category><![CDATA[privacy breach]]></category>
		<category><![CDATA[Reid Hospital]]></category>
		<category><![CDATA[security breach]]></category>
		<category><![CDATA[stolen laptop]]></category>

		<guid isPermaLink="false">http://www.endpoint-security.info/?p=658</guid>
		<description><![CDATA[A computer that may contain personally identifiable information of almost 20,000 Reid Hospital patients was stolen from an employee’s home office in early April. According to Craig Kinyon, CEO/President of Reid Hospital, the laptop was only one of the items stolen in a break in, this indicating that data was not the objective of the [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.endpoint-security.info%2F2011%2F05%2F11%2Fstolen-laptop-could-contain-private-medical-data-of-20000-individuals%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.endpoint-security.info%2F2011%2F05%2F11%2Fstolen-laptop-could-contain-private-medical-data-of-20000-individuals%2F&amp;source=cososys&amp;style=normal&amp;b=2" height="61" width="50" /><br />
			</a>
		</div>
<p>A computer that may contain <a href="http://www.pal-item.com/article/20110509/NEWS01/110509027/-No-heading-" target="_blank">personally identifiable information of almost 20,000 Reid Hospital patients</a> was stolen from an employee’s home office in early April. According to Craig Kinyon, CEO/President of Reid Hospital, the laptop was only one of the items stolen in a break in, this indicating that data was not the objective of the theft.</p>
<p><a href="http://www.endpointprotector.com/lp/endpoint_protector_general_EN.php"><img title="Endpoint Security and Device Control Solutions with low TCO and great ROI." src="/wp-content/uploads/banners/banner-galactic-red-epp.jpg" border="0" alt="Endpoint Security and Device Control Solutions with low TCO and great ROI." width="500" height="100" align="middle" /></a></p>
<p>The computer in question might have been storing reports on Medicare and Medicaid patients that have received treatment and medical services between 1999 and 2008. The reports contain names and Social Security numbers, as well as Medicare numbers.</p>
<p>No information stored after 2008 was stored on the stolen device. Nor were any financial information, banking information or other identifying information stored on the missing notebook.</p>
<div id="crp_related"><h3>Related Posts:</h3><ul><li><a href="http://www.endpoint-security.info/2011/05/23/loss-or-theft-of-hardware-still-important-cause-for-data-breaches-in-health-sector/" rel="bookmark" class="crp_title">Loss or theft of hardware, still important cause for data breaches in health sector</a></li><li><a href="http://www.endpoint-security.info/2010/08/18/montefiore-medical-center-data-theft/" rel="bookmark" class="crp_title">Montefiore Medical Center: two computer thefts expose well over 23,000 private records</a></li><li><a href="http://www.endpoint-security.info/2011/04/07/93500-midstate-medical-center-patients-affected-by-data-breach/" rel="bookmark" class="crp_title">93,500 MidState Medical Center patients affected by data breach</a></li><li><a href="http://www.endpoint-security.info/2011/05/06/plymouth-hospital-notifies-6000-patients-of-potential-security-breach/" rel="bookmark" class="crp_title">Plymouth hospital notifies 6000 patients of potential security breach</a></li><li><a href="http://www.endpoint-security.info/2010/09/02/pk-yonge-laptop-theft-8300-people-affected/" rel="bookmark" class="crp_title">Data breach leads to loss of details of over 8,300 P.K. Yonge employees, students</a></li></ul></div>]]></content:encoded>
			<wfw:commentRss>http://www.endpoint-security.info/2011/05/11/stolen-laptop-could-contain-private-medical-data-of-20000-individuals/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Former employee gets home detention for breaching employer email system</title>
		<link>http://www.endpoint-security.info/2011/03/01/former-employee-gets-home-detention-for-breaching-employer-email-system/</link>
		<comments>http://www.endpoint-security.info/2011/03/01/former-employee-gets-home-detention-for-breaching-employer-email-system/#comments</comments>
		<pubDate>Tue, 01 Mar 2011 19:29:28 +0000</pubDate>
		<dc:creator>Agent Smith</dc:creator>
				<category><![CDATA[Data Theft & Loss]]></category>
		<category><![CDATA[endpoint security]]></category>
		<category><![CDATA[security breach]]></category>
		<category><![CDATA[data breach]]></category>
		<category><![CDATA[insider threat]]></category>
		<category><![CDATA[leaked details]]></category>

		<guid isPermaLink="false">http://www.endpoint-security.info/?p=615</guid>
		<description><![CDATA[Inside threat is kicking and screaming and far from being gone from the corporate security world. Upset over being fired, a Californian woman breached the email system of her former employer and posted confidential documents to public websites. She got caught and the sentence was 60 days of home detention plus  ayear of probation for [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.endpoint-security.info%2F2011%2F03%2F01%2Fformer-employee-gets-home-detention-for-breaching-employer-email-system%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.endpoint-security.info%2F2011%2F03%2F01%2Fformer-employee-gets-home-detention-for-breaching-employer-email-system%2F&amp;source=cososys&amp;style=normal&amp;b=2" height="61" width="50" /><br />
			</a>
		</div>
<p>Inside threat is kicking and screaming and far from being gone from the corporate security world. Upset over being fired,<a href="http://www.theregister.co.uk/2011/03/01/sacked_employee_sentenced/" target="_blank"> a Californian woman breached the email system of her former employer</a> and posted confidential documents to public websites. She got caught and the sentence was 60 days of home detention plus  ayear of probation for the one count of felony computer intrusion that 44 year old Ming Shao pleaded guilty to.</p>
<p>In her plea, the woman admitted to a value of the stolen information belonging to PanTerra Networks(which included a Weekly Ops Report) ranging between 10,000 and 30,000 US dollars. She admitted to have breached the PanTerra network and exposing the confidential files as a form of revenge for being fired in August 2009.<span id="more-615"></span></p>
<p>Shao gained and maintained access to PanTerra employee email accounts for several months after being fired. She then posted the data she collected to websites such as sacramentograpevine.com and hostedpbxproviders.com. The latter website, which covers user feedback on PanTerra and other companies published a posting by Shao that described a server crash. She also leaked details on ongoing negotiations between PanTerra and potential customers, causing the company to lose potential contracts.</p>
<p>Shao was also ordered to pay a 2,000 US dollars fine and another 20,747 in restitution. As she was at her first offence, the court considered a sentence of probation would suffice.</p>
<div id="crp_related"><h3>Related Posts:</h3><ul><li><a href="http://www.endpoint-security.info/2010/11/01/one-million-pay-for-citibank-credit-card-account-theft/" rel="bookmark" class="crp_title">Court orders one million pay restitution for Citibank credit card accounts theft</a></li><li><a href="http://www.endpoint-security.info/2008/05/27/tjx-fired-employee-who-exposed-their-lack-of-security/" rel="bookmark" class="crp_title">TJX Fired Employee Who Exposed Their Lack of Security</a></li><li><a href="http://www.endpoint-security.info/2010/10/11/former-employee-hacks-computer-system-to-steal-company-data/" rel="bookmark" class="crp_title">Former employee hacks computer system to steal company data</a></li><li><a href="http://www.endpoint-security.info/2008/09/23/gambling-site-ex-employee-responsible-for-150-id-thefts/" rel="bookmark" class="crp_title">Gambling Site Ex-Employee Responsible for 150 ID Thefts</a></li><li><a href="http://www.endpoint-security.info/2012/01/24/zappos-and-amazon-face-consequences-of-data-breach/" rel="bookmark" class="crp_title">Zappos and Amazon face consequences of data breach</a></li></ul></div>]]></content:encoded>
			<wfw:commentRss>http://www.endpoint-security.info/2011/03/01/former-employee-gets-home-detention-for-breaching-employer-email-system/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Facebook fixes data theft issue</title>
		<link>http://www.endpoint-security.info/2011/02/04/facebook-fixes-data-theft-issue/</link>
		<comments>http://www.endpoint-security.info/2011/02/04/facebook-fixes-data-theft-issue/#comments</comments>
		<pubDate>Thu, 03 Feb 2011 22:03:00 +0000</pubDate>
		<dc:creator>Agent Smith</dc:creator>
				<category><![CDATA[Data Theft & Loss]]></category>
		<category><![CDATA[security breach]]></category>
		<category><![CDATA[data theft]]></category>
		<category><![CDATA[facebook]]></category>
		<category><![CDATA[malware]]></category>

		<guid isPermaLink="false">http://www.endpoint-security.info/?p=599</guid>
		<description><![CDATA[A security problem that allowed malicious web sites to access personal user information without their explicit permission has just been fixed by Facebook. This flaw has been reported by Rui Wang and Zhou Li, two student researchers. According to Graham Cluley, senior technology consultant at Sophos, the security lapse could let malware spread between users,and [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.endpoint-security.info%2F2011%2F02%2F04%2Ffacebook-fixes-data-theft-issue%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.endpoint-security.info%2F2011%2F02%2F04%2Ffacebook-fixes-data-theft-issue%2F&amp;source=cososys&amp;style=normal&amp;b=2" height="61" width="50" /><br />
			</a>
		</div>
<p>A security problem that allowed <a href="http://www.v3.co.uk/v3/news/2274575/facebook-privacy-security-flaw" target="_blank">malicious web sites to access personal user information without their explicit permission</a> has just been fixed by Facebook. This flaw has been reported by Rui Wang and Zhou Li, two student researchers.</p>
<p>According to Graham Cluley, senior technology consultant at Sophos, the security lapse could let malware spread between users,and abuse data as it goes by impersonating a legitimate site that already has the permission to take information.</p>
<blockquote><p>&#8220;According to Wang and Li, it was possible for any web site to impersonate other sites which had been authorised to access user data, such as name, gender and date of birth,&#8221; he said. “Furthermore, the researchers found a way to publish content on the visiting users&#8217; Facebook walls under the guise of legitimate web sites, a potential way to spread malware and phishing attacks.&#8221;<span id="more-599"></span></p></blockquote>
<p>The security problem only occurred in accounts with looser settings, as more rigorous privacy settings offered adequate protection for the flaw. Fortunately, the students informed only Facebook and Cluley and not the wider world, which could have led to the exploit being used by malicious groups.</p>
<p>Cluley, an outspoken critic of Facebook&#8217;s security practices according to V3.co.uk, acknowledged the social site&#8217;s security team <em>&#8220;responded promptly, and should be applauded for fixing the vulnerability rapidly once they were informed about it&#8221;</em>.</p>
<p>However, Facebook is likely to be targeted by similar malware in the future due to it’s complexity.</p>
<div id="crp_related"><h3>Related Posts:</h3><ul><li><a href="http://www.endpoint-security.info/2012/01/09/ramnit-worm-steals-45000-facebook-users-credentials/" rel="bookmark" class="crp_title">Ramnit worm steals 45000 Facebook users&#8217; credentials</a></li><li><a href="http://www.endpoint-security.info/2009/07/07/eu-data-protection-laws-take-toll-on-social-networking/" rel="bookmark" class="crp_title">EU data protection laws take toll on social networking</a></li><li><a href="http://www.endpoint-security.info/2009/08/11/how-to-prevent-social-networking-threats-on-private-data/" rel="bookmark" class="crp_title">How to Prevent Social Networking Threats on Private Data?</a></li><li><a href="http://www.endpoint-security.info/2008/02/20/symantec-customers-angered-by-update-bug/" rel="bookmark" class="crp_title">Symantec Customers Angered by Update Bug</a></li><li><a href="http://www.endpoint-security.info/2008/11/20/new-flaws-in-wireless-security-exposed/" rel="bookmark" class="crp_title">New Flaws in Wireless Security Exposed</a></li></ul></div>]]></content:encoded>
			<wfw:commentRss>http://www.endpoint-security.info/2011/02/04/facebook-fixes-data-theft-issue/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Data Breach affecting ALDI stores’ payment terminals</title>
		<link>http://www.endpoint-security.info/2010/10/08/aldi-data-breach/</link>
		<comments>http://www.endpoint-security.info/2010/10/08/aldi-data-breach/#comments</comments>
		<pubDate>Fri, 08 Oct 2010 10:54:30 +0000</pubDate>
		<dc:creator>Agent Smith</dc:creator>
				<category><![CDATA[Data Theft & Loss]]></category>
		<category><![CDATA[Identity Theft]]></category>
		<category><![CDATA[security breach]]></category>
		<category><![CDATA[Aldi]]></category>
		<category><![CDATA[data breach]]></category>
		<category><![CDATA[payment terminals]]></category>

		<guid isPermaLink="false">http://www.endpoint-security.info/?p=533</guid>
		<description><![CDATA[Between June 1 and August 31 2010 illegal payment card terminals have apparently been placed in several ALDI stores by unauthorised individuals in order to obtain secured information. With the help of these terminals, private information such as name, card account and PIN number have been acquired. According to ALDI sources, terminals in the following [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.endpoint-security.info%2F2010%2F10%2F08%2Faldi-data-breach%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.endpoint-security.info%2F2010%2F10%2F08%2Faldi-data-breach%2F&amp;source=cososys&amp;style=normal&amp;b=2" height="61" width="50" /><br />
			</a>
		</div>
<div><a href="http://www.endpoint-security.info/wp-content/uploads/2010/10/Aldi_Logo.gif"><img style="float: left; margin-right: 10px;" title="Aldi_Logo" src="http://www.endpoint-security.info/wp-content/uploads/2010/10/Aldi_Logo.gif" alt="" width="104" height="110" /></a>Between June 1 and August 31 2010 <a href="http://www.computerworld.com/s/article/9189982/Aldi_data_breach_shows_payment_terminal_holes?taxonomyId=17" target="_blank">illegal payment card terminals have apparently been placed in several ALDI stores</a> by unauthorised individuals in order to obtain secured information. With the help of these terminals, private information such as name, card account and PIN number have been acquired.</p>
<p>According to ALDI sources, terminals in the following areas have been affected:<span id="more-533"></span></p>
<ul>
<li>Connecticut (limited to greater Hartford area)</li>
<li>Georgia (limited to greater Atlanta area)</li>
<li>Illinois (limited to greater Chicago area)</li>
<li>Indiana (limited to greater Indianapolis area)</li>
<li>Maryland</li>
<li>New Jersey</li>
<li>New York (limited to greater Rochester area and Lower Hudson Valley)</li>
<li>North Carolina (limited to greater Charlotte and Raleigh areas)</li>
<li>Pennsylvania (limited to greater Pittsburgh and Philadelphia areas)</li>
<li>South Carolina (limited to greater Charlotte area)</li>
<li>Virginia (limited to greater Washington, D.C. area)</li>
</ul>
</div>
<div>
Precautions have been taken against this crime in the form of notifying the enforcement authorities and relevant card brands. Also additional security measures have been implemented and an investigation has began.</p>
<p>ALDI expressed regret towards this incident and also encourages towards vigilance and carefulness. Customers should carefully review their bank statements and credit reports.</p></div>
<div>
Any suspicious payment should be immediately reported to the bank or card company and local law enforcement authorities.</p>
<p>US law entitles any customer to one free credit report each year. Further details can be found on ALDI’s website or by clicking this <a href="http://aldi.us/us/html/company/12502_ENU_HTML.htm?WT.z_src=banner&amp;WT.ac=Banner-without-Alt-Tag" target="_blank">link</a></div>
<div id="crp_related"><h3>Related Posts:</h3><ul><li><a href="http://www.endpoint-security.info/2010/11/05/insiders-frequent-source-of-corporate-fraud-incidents/" rel="bookmark" class="crp_title">Insiders, frequent source of corporate fraud incidents</a></li><li><a href="http://www.endpoint-security.info/2008/09/26/tjx-effects-forever-21-payment-card-breach/" rel="bookmark" class="crp_title">TJX Effects: Forever 21 Payment Card Breach</a></li><li><a href="http://www.endpoint-security.info/2009/11/13/corporate-data-breaches-raise-the-risk-of-consumer-id-theft/" rel="bookmark" class="crp_title">Corporate data breaches raise the risk of consumer ID theft</a></li><li><a href="http://www.endpoint-security.info/2008/03/18/second-largest-security-breach-recently-exposed/" rel="bookmark" class="crp_title">Second Largest Security Breach Recently Exposed</a></li><li><a href="http://www.endpoint-security.info/2008/06/10/breach-disclosure-laws-are-pointless/" rel="bookmark" class="crp_title">Breach Disclosure Laws are Pointless</a></li></ul></div>]]></content:encoded>
			<wfw:commentRss>http://www.endpoint-security.info/2010/10/08/aldi-data-breach/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
	</channel>
</rss>

