The TJX case still keeps me busy, and I just came about this Wall Street Journal reprint. It is well worth a reading, as it taps into the details.
An auditor pointed to the lousy security in september 2006:
"The auditor told the company last Sept. 29 that it wasn't complying with many of the requirements imposed by Visa and MasterCard, according to a person familiar with the report. The auditor's report cited the outmoded WEP encryption and missing software patches and firewalls. "
As I have stated earlier, a good policy should be enforced using technology. Perhaps Airtight Networks solutions is a technology to do just that. They claim to controll the air waves of any WiFi system, and to control even rogue clients and APs. What do you think? Is it worth looking into? I have not tested their tools, so if you can provide insights, please do!
Post new comment