TJX Commentary

(Posted by adam)
I keep trying to avoid commenting on TJX, and keep getting drawn back in. The amount of news and analysis out there is large, and I'm selecting islands in the clickstream. (Any advice on who's covering it well would be appreciated.)

In "TJX Lawsuits -- 45 Million Credit Cards," Pete Lindstrom mentions that there are 18 lawsuits listed in a TJX 10K. Pete discusses the legal situation. My personal opinion is that the 451,000 people whose ID numbers were taken will have a better chance at getting damages from TJX than those whose credit cards were taken. Companies using return management tools that rely on drivers license swipes should consider their risks.

See also "Why Encryption Didn't Save TJX." We need layered defenses, and we need to have honest conversations about what's happening. Getting from here to there might be painful-change often is-but that doesn't mean it's not worthwhile.

Posted by adam on April 1, 2007 at 8:16 PM in breach analysis . You can: comment, view comments (1), search Technorati.

Bookmark this post:

Comments

Seems like you have a bit of an issue with a comment poster trying to harness your pagerank...

[Cleaned up, thanks! --Adam]

Posted by: Alexandre Carmel-Veilleux | April 4, 2007 10:35 AM