Question: On November 14, US department store chain Macy's alerted customers of a security breach discovered in October on its website that led to the compromise

On November 14, US department store chain Macy's alerted customers of a security breach discovered in October on its website that led to the compromise of payment card details and customer information, including full names, addresses, telephone numbers and email addresses. At the time, the company described the breach as consisting of highly specific unauthorized code injected into the checkout and wallet pages on Macys.com with the goal of capturing information submitted by customers -- in other words what the security industry calls a web skimming attack.

1a. Identify gaps in business, security controls, etc. that led to the incident

1b. Identify the top 3 critical risks leading to the incident

Step by Step Solution

There are 3 Steps involved in it

1 Expert Approved Answer
Step: 1 Unlock

1a Gaps in Business and Security Controls Leading to the Incident 1 Lack of Adequate Web Application Security Monitoring Gap Macys website was comprom... View full answer

blur-text-image
Question Has Been Solved by an Expert!

Get step-by-step solutions from verified subject matter experts

Step: 2 Unlock
Step: 3 Unlock

Students Have Also Explored These Related General Management Questions!

Related Book