Posts Tagged ‘Victoria’s Secret’

Privacy Not Only Requires Securing PII, It Also Requires Keeping the Trust of Your Customers

Tuesday, July 10th, 2007

Recently I was speaking with a client about a new Internet e-commerce application they were testing, and I asked them to give a demonstration. One of the questions I asked while watching was whether there were any ways in which someone could get information about customers’ orders. After doing some various tests, a screen popped up showing a database of names, item descriptions, and other information related to the orders. The billing information, such as credit card number, was *NOT* within this database, but the names and mailing addresses were; these were used for the indexing links to the database.