<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0"><channel><title>DISC InfoSec blog - Latest Comments</title><link xmlns="http://www.w3.org/2005/Atom" rel="http://api.friendfeed.com/2008/03#sup" href="http://disqus.com/sup/all.sup#forumcomments-b6530a25" type="application/json"/><link>http://discinfosecblog.disqus.com/</link><description>Information Security &amp; Compliance</description><language>en</language><lastBuildDate>Fri, 20 Nov 2009 12:06:11 -0000</lastBuildDate><item><title>Re: Credit Card Primary Account Number and Encryption</title><link>http://blog.deurainfosec.com/credit-card-primary-account-number-and-encryption#comment-23626916</link><description>To much things to do. credit card fraud still be a big problem and keep go on.&lt;br&gt;&lt;a href="http://www.elect-mer.com/" rel="dofollow" rel="nofollow"&gt;merchant services&lt;/a&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">alen14254</dc:creator><pubDate>Fri, 20 Nov 2009 12:06:11 -0000</pubDate></item><item><title>Re: Credit card authorization process weakness</title><link>http://blog.deurainfosec.com/credit-card-authorization-process-weakness#comment-23625648</link><description>I am impressed that a Chase Bank representative bothered to respond. I wonder if that person will get to keep their job.&lt;br&gt;&lt;a href="http://www.elect-mer.com/" rel="dofollow" rel="nofollow"&gt;merchant services&lt;/a&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">alen14254</dc:creator><pubDate>Fri, 20 Nov 2009 11:50:57 -0000</pubDate></item><item><title>Re: HIPAA and business associate</title><link>http://blog.deurainfosec.com/hipaa-and-business-associate#comment-23624546</link><description>That's the great article! I just pass 'n read it, two thumbs up! ;)</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">digital_busines_ phone</dc:creator><pubDate>Fri, 20 Nov 2009 11:32:51 -0000</pubDate></item><item><title>Re: Health Net healthcare data breach affects1.5 million</title><link>http://blog.deurainfosec.com/health-net-healthcare-data-breach-affects15-million#comment-23553303</link><description>Another wakeup call for healtcare organiztions which put a spot light on their current state of information security - it is high time for healthcare organizations to know their current state of security and develop some sort of transition plan based on security standards (iso 27k) to improve their baseline security.</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">disc7</dc:creator><pubDate>Thu, 19 Nov 2009 13:23:28 -0000</pubDate></item><item><title>Re: Online gangs cash in on swine flu</title><link>http://blog.deurainfosec.com/online-gangs-cash-in-on-swine-flu#comment-23438063</link><description>THis is a really interesting example of the interface between white collar crime and organized crime and it's a chilling example of the vulnerability of desperate people with access to the internet - the customers afraid of swine flu, I mean.</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Cybercrimer</dc:creator><pubDate>Wed, 18 Nov 2009 01:15:30 -0000</pubDate></item><item><title>Re: PCI DSS Law and State of Nevada</title><link>http://blog.deurainfosec.com/pci-dss-law-and-state-of-nevada#comment-17920104</link><description>45 States followed California when they introduced “SB1386″, the Security Breach Information Act, which has specific and restrictive privacy breach reporting requirements.</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">businessprocessautomation</dc:creator><pubDate>Thu, 01 Oct 2009 04:27:39 -0000</pubDate></item><item><title>Re: How ARRA and HITECH provisions affect HIPAA compliance</title><link>http://blog.deurainfosec.com/how-arra-and-hitech-provisions-affect-hipaa-compliance#comment-17785003</link><description>Thanks for posting the resources because it gave me the opportunity of checking your data and it all seems quite accurate. This means our health reform is going down the hill. &lt;br&gt;________ &lt;br&gt;&lt;a rel="follow" href="http://www.Canadian-OnlinePharmacies.com" rel="nofollow"&gt;Canadian pharmacies&lt;/a&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">FreddySimpson</dc:creator><pubDate>Tue, 29 Sep 2009 13:41:43 -0000</pubDate></item><item><title>Re: How ARRA and HITECH provisions affect HIPAA compliance</title><link>http://blog.deurainfosec.com/how-arra-and-hitech-provisions-affect-hipaa-compliance#comment-17637240</link><description>So what's new? People shouldn't be very surprised because our politicians don't really care about law enforcing and health care. The medical system is getting worse and worse, but we do have some good news from the laws that will force health insurance companies to accept chronical ill people. That's all. But I need to mention that the law forcing health insurance companies is still to be discussed. &lt;br&gt;___________________________________________________&lt;br&gt;&lt;a rel="follow" href="http://www.NoPrescriptioNeeded.com" rel="nofollow"&gt;No Prescription Online Pharmacy&lt;/a&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">StevenTaylor</dc:creator><pubDate>Sun, 27 Sep 2009 11:24:34 -0000</pubDate></item><item><title>Re: Due Diligence, and Security Assessments</title><link>http://blog.deurainfosec.com/due-diligence-and-security-assessments#comment-17106692</link><description>Donn Parker defines due care as a “use of resonable safeguards based on the practices of similiar organizations”&lt;br&gt;&lt;br&gt;Fred Cohen defines “due diligence is met by virtue of compliance review.”</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Business process automation</dc:creator><pubDate>Tue, 22 Sep 2009 03:47:26 -0000</pubDate></item><item><title>Re: Vulnerability management and regulatory compliance</title><link>http://blog.deurainfosec.com/vulnerability-management-and-regulatory-compliance#comment-17030626</link><description>More critical financial really need a good strong security information.&lt;br&gt;&lt;a href="http://www.litecreditreport.com/" rel="nofollow"&gt;freecreditreport&lt;/a&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Ethan</dc:creator><pubDate>Mon, 21 Sep 2009 06:48:05 -0000</pubDate></item><item><title>Re: Managing Risks and NIST 800-53</title><link>http://blog.deurainfosec.com/managing-risks-and-nist-800-53#comment-17030608</link><description>Such a great information, easy to understand work flow. Nice informaiton&lt;br&gt;&lt;a href="http://www.litecreditreport.com/" rel="nofollow"&gt;freecreditreport&lt;/a&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Ethan</dc:creator><pubDate>Mon, 21 Sep 2009 06:46:31 -0000</pubDate></item><item><title>Re: World Bank security breach and financial crisis</title><link>//world-bank-security-breach-and-financial-crisis#comment-16294366</link><description>Sometimes the world bank can't do something about the financial that a country is experiencing.</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">etrade</dc:creator><pubDate>Thu, 10 Sep 2009 03:56:55 -0000</pubDate></item><item><title>Re: How ARRA and HITECH provisions affect HIPAA compliance</title><link>http://blog.deurainfosec.com/how-arra-and-hitech-provisions-affect-hipaa-compliance#comment-16260793</link><description>Thanks for information, I'll always keep updated here!</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">mesothelioma_lawyer</dc:creator><pubDate>Wed, 09 Sep 2009 12:36:42 -0000</pubDate></item><item><title>Re: World Bank security breach and financial crisis</title><link>//world-bank-security-breach-and-financial-crisis#comment-16201843</link><description>The World Bank’s technology must be state of the art at all times.</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">grapeapester</dc:creator><pubDate>Tue, 08 Sep 2009 13:47:01 -0000</pubDate></item><item><title>Re: World Bank security breach and financial crisis</title><link>//world-bank-security-breach-and-financial-crisis#comment-15853548</link><description>i am studying in accountant. and i try to do research about bank in USA. this post help me.Thank you</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">madStarve@nccu</dc:creator><pubDate>Thu, 03 Sep 2009 05:41:46 -0000</pubDate></item><item><title>Re: PCI DSS Misconceptions and Facts</title><link>http://blog.deurainfosec.com/pci-dss-misconceptions-and-facts#comment-15552341</link><description>Well you really don't have to worry about that. Thanks sharing interesting post like this. It is worth and appreciating to read.&lt;br&gt;&lt;br&gt;- &lt;a title="Country"   rel="dofollow" href="http://www.DigBands.com/country" target="_blank" rel="nofollow"&gt;Country&lt;/a&gt; -</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Country</dc:creator><pubDate>Fri, 28 Aug 2009 21:07:28 -0000</pubDate></item><item><title>Re: Managing Risks and NIST 800-53</title><link>http://blog.deurainfosec.com/managing-risks-and-nist-800-53#comment-15525232</link><description>thanks a lot for bringing this up, I really need this kind of information now...</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">credit bureau addresses</dc:creator><pubDate>Fri, 28 Aug 2009 10:06:30 -0000</pubDate></item><item><title>Re: Skype and Information Privacy</title><link>http://blog.deurainfosec.com/skype-and-information-privacy#comment-15518884</link><description>You can make your communication with &lt;a href="http://skypefun.net" rel="nofollow"&gt;Skype&lt;/a&gt; more fun, if you use skype hidden emoticons</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">boros</dc:creator><pubDate>Fri, 28 Aug 2009 04:13:26 -0000</pubDate></item><item><title>Re: Credit card authorization process weakness</title><link>http://blog.deurainfosec.com/credit-card-authorization-process-weakness#comment-15460714</link><description>To much things to do. credit card fraud still be a big problem and keep go on.</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">freeannualcreditreport</dc:creator><pubDate>Thu, 27 Aug 2009 04:54:29 -0000</pubDate></item><item><title>Re: PCI DSS Misconceptions and Facts</title><link>http://blog.deurainfosec.com/pci-dss-misconceptions-and-facts#comment-15266633</link><description>You said, "PCI has no ROI and simply too much for a small business", but you never indicated what they have too much of (debt, competitors, etc).  What ever it is, perhaps it can be resolved with a little more advertising using online methods like social media, &lt;a href="http://www.adwido.com" rel="nofollow"&gt;Adwido&lt;/a&gt;, etc.</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">mlgreen8753</dc:creator><pubDate>Sun, 23 Aug 2009 14:45:10 -0000</pubDate></item><item><title>Re: Credit Card Primary Account Number and Encryption</title><link>http://blog.deurainfosec.com/credit-card-primary-account-number-and-encryption#comment-14859252</link><description>Nice to see the step by step process in credit card encryption.</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">pauly99</dc:creator><pubDate>Fri, 14 Aug 2009 18:54:42 -0000</pubDate></item><item><title>Re: Credit card authorization process weakness</title><link>http://blog.deurainfosec.com/credit-card-authorization-process-weakness#comment-14420410</link><description>Scary. No matter the high security a bank implements, the hackers job is to unveil the "code". They are experts in this matter. Hmmm, the end result: poor consumers.</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">exploroo</dc:creator><pubDate>Fri, 07 Aug 2009 05:40:07 -0000</pubDate></item><item><title>Re: PCI DSS Misconceptions and Facts</title><link>http://blog.deurainfosec.com/pci-dss-misconceptions-and-facts#comment-13485174</link><description>Indeed, there is still a great need for education in regard to PCI compliance, as is evidenced by the common misconceptions outlined above.  &lt;br&gt;&lt;br&gt;If you're interested in making PCI compliance slightly more entertaining while you learn, try our PCI Compliance Quiz Widget:  &lt;a href="http://www.elementps.com/pci-compliance-quiz/" rel="nofollow"&gt;http://www.elementps.com/pci-compliance-quiz/&lt;/a&gt;&lt;br&gt;&lt;br&gt;Enjoy!</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Element Payment Services</dc:creator><pubDate>Tue, 28 Jul 2009 18:42:34 -0000</pubDate></item><item><title>Re: World Bank security breach and financial crisis</title><link>//world-bank-security-breach-and-financial-crisis#comment-12917903</link><description>Although the line items in the report are a &lt;a href="http://www.providianinfo.com" rel="nofollow"&gt;providian.com&lt;/a&gt; little obfuscated (TEXT4462 links to “Customer and other Miscellaneous Fees”, and TEXT4463 links to “Intercompany Procesing Fee Income”), I was able to extract a couple of interesting numbers.</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">yardley285022</dc:creator><pubDate>Sun, 19 Jul 2009 08:16:45 -0000</pubDate></item><item><title>Re: World Bank security breach and financial crisis</title><link>//world-bank-security-breach-and-financial-crisis#comment-12501857</link><description>There is another link under the category of personal finance but it has nothing to do with finance. If you have difficulties in making payment, you can click the link named  &lt;br&gt;&lt;br&gt;&lt;a href="http://www.wachoviabankviews.com/" rel="nofollow"&gt;wachoviabank.com&lt;/a&gt;. You will have an expert helping you to fix your problems and you don’t have to go out of your &lt;br&gt;&lt;br&gt;home to get the service. What you need to do is to choose a button between the two “call us today” and “we’ll call you”. Don’t you think this service shows the &lt;br&gt;&lt;br&gt;attentiveness and consideration of the Wachovia? It’s really good in my opinion.</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">burdickrobert</dc:creator><pubDate>Sat, 11 Jul 2009 10:24:50 -0000</pubDate></item></channel></rss>