<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/' xmlns:georss='http://www.georss.org/georss' xmlns:gd='http://schemas.google.com/g/2005' xmlns:thr='http://purl.org/syndication/thread/1.0'><id>tag:blogger.com,1999:blog-1912665588425487533</id><updated>2011-11-25T05:29:01.151-02:00</updated><title type='text'>OpenPCI Toolkit</title><subtitle type='html'>Segurança da Informação</subtitle><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://openpci.blogspot.com/feeds/posts/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default?max-results=100'/><link rel='alternate' type='text/html' href='http://openpci.blogspot.com/'/><link rel='hub' href='http://pubsubhubbub.appspot.com/'/><author><name>Juliano Dapper</name><uri>http://www.blogger.com/profile/10510185774345485496</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/_PK_3xxN7mBs/TK_YPaMZ_RI/AAAAAAAAAKc/JZDVhdgI2EY/S220/DSC00011.JPG'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>37</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>100</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-1912665588425487533.post-2057933783150917176</id><published>2010-11-22T15:01:00.002-02:00</published><updated>2010-11-22T15:02:04.854-02:00</updated><title type='text'>assalto.com.br</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_PK_3xxN7mBs/TOqiArS6eRI/AAAAAAAAALE/FTWFBt2TbP4/s1600/horus%2B001.jpg"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 299px; height: 400px;" src="http://1.bp.blogspot.com/_PK_3xxN7mBs/TOqiArS6eRI/AAAAAAAAALE/FTWFBt2TbP4/s400/horus%2B001.jpg" border="0" alt=""id="BLOGGER_PHOTO_ID_5542420423938570514" /&gt;&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1912665588425487533-2057933783150917176?l=openpci.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://openpci.blogspot.com/feeds/2057933783150917176/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://openpci.blogspot.com/2010/11/assaltocombr.html#comment-form' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/2057933783150917176'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/2057933783150917176'/><link rel='alternate' type='text/html' href='http://openpci.blogspot.com/2010/11/assaltocombr.html' title='assalto.com.br'/><author><name>Juliano Dapper</name><uri>http://www.blogger.com/profile/10510185774345485496</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/_PK_3xxN7mBs/TK_YPaMZ_RI/AAAAAAAAAKc/JZDVhdgI2EY/S220/DSC00011.JPG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_PK_3xxN7mBs/TOqiArS6eRI/AAAAAAAAALE/FTWFBt2TbP4/s72-c/horus%2B001.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-1912665588425487533.post-8954934159881109968</id><published>2010-11-19T15:55:00.005-02:00</published><updated>2010-11-19T16:39:54.113-02:00</updated><title type='text'>TCC - Um Toolkit para atender os requisitos técnicos do PCI DSS</title><content type='html'>Após quase um ano estou publicando meu tcc sobre o OpenPCI Toolkit. &lt;br /&gt;&lt;br /&gt;Pouca coisa mudou de lá pra cá em relação ao PCI DSS, então pode-se dizer que o trabalho está bem atualizado ainda.&lt;br /&gt;&lt;br /&gt;http://www.slideshare.net/fjdapper/um-toolkit-para-atender-os-requisitos-tcnicos-do-pci-dss&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1912665588425487533-8954934159881109968?l=openpci.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://openpci.blogspot.com/feeds/8954934159881109968/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://openpci.blogspot.com/2010/11/tcc-um-toolkit-para-atender-os.html#comment-form' title='1 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/8954934159881109968'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/8954934159881109968'/><link rel='alternate' type='text/html' href='http://openpci.blogspot.com/2010/11/tcc-um-toolkit-para-atender-os.html' title='TCC - Um Toolkit para atender os requisitos técnicos do PCI DSS'/><author><name>Juliano Dapper</name><uri>http://www.blogger.com/profile/10510185774345485496</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/_PK_3xxN7mBs/TK_YPaMZ_RI/AAAAAAAAAKc/JZDVhdgI2EY/S220/DSC00011.JPG'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-1912665588425487533.post-2031796104846770951</id><published>2010-10-29T16:37:00.002-02:00</published><updated>2010-10-29T16:45:06.438-02:00</updated><title type='text'>PCI Security Standards Council Releases PCI DSS 2.0 and PA-DSS 2.0</title><content type='html'>Ontem foi o lançamento da versão 2.0 do PCI DSS e do PA-DSS. A versão 2.0 do PCI DSS melhorou o entedimento de alguns requisitos e incorporou apenas um novo ítem que se tornará exigência somente em 2012.&lt;br /&gt;&lt;br /&gt;Segue uma lista de algumas mudanças:&lt;br /&gt;&lt;br /&gt;- Melhor alinhamento com os requisitos do PA-DSS&lt;br /&gt;- Enfatiza que o ambiente de dados do portador do cartão é composto por pessoas, processos e tecnologia&lt;br /&gt;- WPA não é mais aceito para segurança de redes sem fio&lt;br /&gt;- Recomenda-se usar um ranking de vulnerabilidades de acordo com o risco para o ambiente (em 30/06 de 2012 passa a ser um requisito).&lt;br /&gt;- Em ambientes virtualizados, deverá ser identificado e considerado no escopo de avaliação todas as máquinas virtuais presentes no mesmo servidor de virtualização, além do próprio servidor (Hypervisor).&lt;br /&gt;&lt;br /&gt;No requisito 12.1.2 o PCI Council pisou na bola e incluiu a ISO 27005 como exemplo de metodologia para análise de risco.&lt;br /&gt;&lt;br /&gt;Isto é um grande equívoco, pois a ISO 27005 fornece apenas diretrizes para o processo de gestão de riscos, conforme previsto na ISO 27001.&lt;br /&gt;&lt;br /&gt;As documentações oficiais estão disponíveis no link abaixo:&lt;br /&gt;&lt;br /&gt;https://www.pcisecuritystandards.org/services_professionals/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1912665588425487533-2031796104846770951?l=openpci.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://openpci.blogspot.com/feeds/2031796104846770951/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://openpci.blogspot.com/2010/10/pci-security-standards-council-releases.html#comment-form' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/2031796104846770951'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/2031796104846770951'/><link rel='alternate' type='text/html' href='http://openpci.blogspot.com/2010/10/pci-security-standards-council-releases.html' title='PCI Security Standards Council Releases PCI DSS 2.0 and PA-DSS 2.0'/><author><name>Juliano Dapper</name><uri>http://www.blogger.com/profile/10510185774345485496</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/_PK_3xxN7mBs/TK_YPaMZ_RI/AAAAAAAAAKc/JZDVhdgI2EY/S220/DSC00011.JPG'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-1912665588425487533.post-8998540273385644788</id><published>2010-10-11T09:35:00.006-03:00</published><updated>2010-10-11T09:42:15.996-03:00</updated><title type='text'>The Definitive Overview of Payment Industry Fraud  and Measures to Prevent It</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_PK_3xxN7mBs/TLMFgz_acdI/AAAAAAAAAK8/C6Gup0iCEjI/s1600/imagem.bmp"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 400px; height: 229px;" src="http://3.bp.blogspot.com/_PK_3xxN7mBs/TLMFgz_acdI/AAAAAAAAAK8/C6Gup0iCEjI/s400/imagem.bmp" border="0" alt=""id="BLOGGER_PHOTO_ID_5526767228983865810" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;http://www.theukcardsassociation.org.uk/files/ukca/fraud_the_facts_2010.pdf&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1912665588425487533-8998540273385644788?l=openpci.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://openpci.blogspot.com/feeds/8998540273385644788/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://openpci.blogspot.com/2010/10/definitive-overview-of-payment-industry.html#comment-form' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/8998540273385644788'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/8998540273385644788'/><link rel='alternate' type='text/html' href='http://openpci.blogspot.com/2010/10/definitive-overview-of-payment-industry.html' title='The Definitive Overview of Payment Industry Fraud  and Measures to Prevent It'/><author><name>Juliano Dapper</name><uri>http://www.blogger.com/profile/10510185774345485496</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/_PK_3xxN7mBs/TK_YPaMZ_RI/AAAAAAAAAKc/JZDVhdgI2EY/S220/DSC00011.JPG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_PK_3xxN7mBs/TLMFgz_acdI/AAAAAAAAAK8/C6Gup0iCEjI/s72-c/imagem.bmp' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-1912665588425487533.post-6311427972825179447</id><published>2010-08-19T09:30:00.002-03:00</published><updated>2010-08-19T09:31:59.427-03:00</updated><title type='text'>É bom ser colorado!</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_PK_3xxN7mBs/TG0kHoV_grI/AAAAAAAAAKM/F5IWqdLj3OA/s1600/biamerica.bmp"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 341px; height: 400px;" src="http://1.bp.blogspot.com/_PK_3xxN7mBs/TG0kHoV_grI/AAAAAAAAAKM/F5IWqdLj3OA/s400/biamerica.bmp" border="0" alt=""id="BLOGGER_PHOTO_ID_5507097632851329714" /&gt;&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1912665588425487533-6311427972825179447?l=openpci.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://openpci.blogspot.com/feeds/6311427972825179447/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://openpci.blogspot.com/2010/08/e-bom-ser-colorado.html#comment-form' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/6311427972825179447'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/6311427972825179447'/><link rel='alternate' type='text/html' href='http://openpci.blogspot.com/2010/08/e-bom-ser-colorado.html' title='É bom ser colorado!'/><author><name>Juliano Dapper</name><uri>http://www.blogger.com/profile/10510185774345485496</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/_PK_3xxN7mBs/TK_YPaMZ_RI/AAAAAAAAAKc/JZDVhdgI2EY/S220/DSC00011.JPG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_PK_3xxN7mBs/TG0kHoV_grI/AAAAAAAAAKM/F5IWqdLj3OA/s72-c/biamerica.bmp' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-1912665588425487533.post-51806158571741467</id><published>2010-07-02T17:19:00.008-03:00</published><updated>2010-07-02T17:36:55.146-03:00</updated><title type='text'>CISSP é a próxima meta!</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_PK_3xxN7mBs/TC5NEuYzf1I/AAAAAAAAAKE/ocwS7BYcWOc/s1600/cissp-logo.jpg"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 400px; height: 400px;" src="http://2.bp.blogspot.com/_PK_3xxN7mBs/TC5NEuYzf1I/AAAAAAAAAKE/ocwS7BYcWOc/s400/cissp-logo.jpg" border="0" alt=""id="BLOGGER_PHOTO_ID_5489409739378098002" /&gt;&lt;/a&gt;&lt;br /&gt;Termimando a faculdade e agora minha próxima meta é obter a certificação CISSP. &lt;br /&gt;&lt;br /&gt;Certificações fazem parte da minha vida profissional desde 2003 quando fiz a Cisco CCNA e depois a LPI 2. Fui um dos 3 representantes do RS a fazer a primeira prova mundial da LPI 3, mas infelizmente só passei em uma delas e não tentei mais.&lt;br /&gt;&lt;br /&gt;Ok, mas o que eu ganho em ser certificado? Bom, algumas pessoas se certificam apenas pra fazer marketing pessoal, particularmente procuro usar o período de preparação para aprender e melhorar como profissional. Também levo em consideração que algumas oportunidades profissionais podem surgir com uma certificação como a CISSP.&lt;br /&gt;&lt;br /&gt;Espero manter um cronograma de estudos, mas com a chegada da minha filha prevista para o final do agosto, talvez o ritmo dos estudos fique mais devagar.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1912665588425487533-51806158571741467?l=openpci.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://openpci.blogspot.com/feeds/51806158571741467/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://openpci.blogspot.com/2010/07/cissp-e-proxima-meta.html#comment-form' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/51806158571741467'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/51806158571741467'/><link rel='alternate' type='text/html' href='http://openpci.blogspot.com/2010/07/cissp-e-proxima-meta.html' title='CISSP é a próxima meta!'/><author><name>Juliano Dapper</name><uri>http://www.blogger.com/profile/10510185774345485496</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/_PK_3xxN7mBs/TK_YPaMZ_RI/AAAAAAAAAKc/JZDVhdgI2EY/S220/DSC00011.JPG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/_PK_3xxN7mBs/TC5NEuYzf1I/AAAAAAAAAKE/ocwS7BYcWOc/s72-c/cissp-logo.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-1912665588425487533.post-1247025023623168630</id><published>2010-05-10T17:26:00.001-03:00</published><updated>2010-05-10T17:28:05.239-03:00</updated><title type='text'>Fun with ATM Skimmers, Part III</title><content type='html'>&lt;object width="425" height="344"&gt;&lt;param name="movie" value="http://www.youtube.com/v/Ty1TEXg6zP4&amp;hl=pt_BR&amp;fs=1&amp;"&gt;&lt;/param&gt;&lt;param name="allowFullScreen" value="true"&gt;&lt;/param&gt;&lt;param name="allowscriptaccess" value="always"&gt;&lt;/param&gt;&lt;embed src="http://www.youtube.com/v/Ty1TEXg6zP4&amp;hl=pt_BR&amp;fs=1&amp;" type="application/x-shockwave-flash" allowscriptaccess="always" allowfullscreen="true" width="425" height="344"&gt;&lt;/embed&gt;&lt;/object&gt;&lt;br /&gt;&lt;br /&gt;http://krebsonsecurity.com/2010/05/fun-with-atm-skimmers-part-iii/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1912665588425487533-1247025023623168630?l=openpci.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://openpci.blogspot.com/feeds/1247025023623168630/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://openpci.blogspot.com/2010/05/fun-with-atm-skimmers-part-iii.html#comment-form' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/1247025023623168630'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/1247025023623168630'/><link rel='alternate' type='text/html' href='http://openpci.blogspot.com/2010/05/fun-with-atm-skimmers-part-iii.html' title='Fun with ATM Skimmers, Part III'/><author><name>Juliano Dapper</name><uri>http://www.blogger.com/profile/10510185774345485496</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/_PK_3xxN7mBs/TK_YPaMZ_RI/AAAAAAAAAKc/JZDVhdgI2EY/S220/DSC00011.JPG'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-1912665588425487533.post-4116073925874464739</id><published>2010-04-30T14:37:00.002-03:00</published><updated>2010-04-30T14:39:08.834-03:00</updated><title type='text'>Sobem as cortinas dos cartões</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_PK_3xxN7mBs/S9sVmdCQ90I/AAAAAAAAAJs/90SfnjI3bKs/s1600/Revista+TI+Inside_abril_10.jpg"&gt;&lt;img style="cursor:pointer; cursor:hand;width: 330px; height: 400px;" src="http://3.bp.blogspot.com/_PK_3xxN7mBs/S9sVmdCQ90I/AAAAAAAAAJs/90SfnjI3bKs/s400/Revista+TI+Inside_abril_10.jpg" border="0" alt=""id="BLOGGER_PHOTO_ID_5465986323117569858" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Fonte: Horus&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1912665588425487533-4116073925874464739?l=openpci.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://openpci.blogspot.com/feeds/4116073925874464739/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://openpci.blogspot.com/2010/04/sobem-as-cortinas-dos-cartoes.html#comment-form' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/4116073925874464739'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/4116073925874464739'/><link rel='alternate' type='text/html' href='http://openpci.blogspot.com/2010/04/sobem-as-cortinas-dos-cartoes.html' title='Sobem as cortinas dos cartões'/><author><name>Juliano Dapper</name><uri>http://www.blogger.com/profile/10510185774345485496</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/_PK_3xxN7mBs/TK_YPaMZ_RI/AAAAAAAAAKc/JZDVhdgI2EY/S220/DSC00011.JPG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_PK_3xxN7mBs/S9sVmdCQ90I/AAAAAAAAAJs/90SfnjI3bKs/s72-c/Revista+TI+Inside_abril_10.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-1912665588425487533.post-252547262983322659</id><published>2010-04-23T08:50:00.006-03:00</published><updated>2010-04-23T11:22:37.102-03:00</updated><title type='text'>Free! Check if your credit card has been stolen!</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_PK_3xxN7mBs/S9GKlMHeLdI/AAAAAAAAAJk/45bYzkhtZ3Q/s1600/Sem+t%C3%ADtulo.bmp"&gt;&lt;img style="cursor:pointer; cursor:hand;width: 400px; height: 126px;" src="http://2.bp.blogspot.com/_PK_3xxN7mBs/S9GKlMHeLdI/AAAAAAAAAJk/45bYzkhtZ3Q/s400/Sem+t%C3%ADtulo.bmp" border="0" alt=""id="BLOGGER_PHOTO_ID_5463300194489478610" /&gt;&lt;/a&gt;&lt;br /&gt;Ótima iniciativa do Anti-Phishing Working Group para conscientizar as pessoas sobre a segurança de seus dados de cartão.&lt;br /&gt;&lt;br /&gt;Não acredite em tudo que você encontra na internet.&lt;br /&gt;&lt;br /&gt;http://ismycreditcardstolen.com&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1912665588425487533-252547262983322659?l=openpci.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://openpci.blogspot.com/feeds/252547262983322659/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://openpci.blogspot.com/2010/04/free-check-if-your-credit-card-has-been.html#comment-form' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/252547262983322659'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/252547262983322659'/><link rel='alternate' type='text/html' href='http://openpci.blogspot.com/2010/04/free-check-if-your-credit-card-has-been.html' title='Free! Check if your credit card has been stolen!'/><author><name>Juliano Dapper</name><uri>http://www.blogger.com/profile/10510185774345485496</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/_PK_3xxN7mBs/TK_YPaMZ_RI/AAAAAAAAAKc/JZDVhdgI2EY/S220/DSC00011.JPG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/_PK_3xxN7mBs/S9GKlMHeLdI/AAAAAAAAAJk/45bYzkhtZ3Q/s72-c/Sem+t%C3%ADtulo.bmp' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-1912665588425487533.post-7600486971351869827</id><published>2010-04-20T15:27:00.002-03:00</published><updated>2010-04-20T15:29:40.936-03:00</updated><title type='text'>Downloads do OpenPCI Toolkit</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_PK_3xxN7mBs/S83yjmYrK7I/AAAAAAAAAJU/wafixUqbvRs/s1600/Sem+t%C3%ADtulo.bmp"&gt;&lt;img style="float:left; margin:0 10px 10px 0;cursor:pointer; cursor:hand;width: 400px; height: 206px;" src="http://1.bp.blogspot.com/_PK_3xxN7mBs/S83yjmYrK7I/AAAAAAAAAJU/wafixUqbvRs/s400/Sem+t%C3%ADtulo.bmp" border="0" alt=""id="BLOGGER_PHOTO_ID_5462288616483662770" /&gt;&lt;/a&gt;&lt;br /&gt;Número de downloads via SourceForge.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1912665588425487533-7600486971351869827?l=openpci.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://openpci.blogspot.com/feeds/7600486971351869827/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://openpci.blogspot.com/2010/04/downloads-do-openpci-toolkit.html#comment-form' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/7600486971351869827'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/7600486971351869827'/><link rel='alternate' type='text/html' href='http://openpci.blogspot.com/2010/04/downloads-do-openpci-toolkit.html' title='Downloads do OpenPCI Toolkit'/><author><name>Juliano Dapper</name><uri>http://www.blogger.com/profile/10510185774345485496</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/_PK_3xxN7mBs/TK_YPaMZ_RI/AAAAAAAAAKc/JZDVhdgI2EY/S220/DSC00011.JPG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_PK_3xxN7mBs/S83yjmYrK7I/AAAAAAAAAJU/wafixUqbvRs/s72-c/Sem+t%C3%ADtulo.bmp' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-1912665588425487533.post-7268277054363001560</id><published>2010-04-12T10:21:00.016-03:00</published><updated>2010-04-12T10:41:09.863-03:00</updated><title type='text'>PCI Data Security Standards Rock</title><content type='html'>&lt;object width="425" height="344"&gt;&lt;param name="movie" value="http://www.youtube.com/v/xpfCr4By71U&amp;hl=pt_BR&amp;fs=1&amp;rel=0"&gt;&lt;/param&gt;&lt;param name="allowFullScreen" value="true"&gt;&lt;/param&gt;&lt;param name="allowscriptaccess" value="always"&gt;&lt;/param&gt;&lt;embed src="http://www.youtube.com/v/xpfCr4By71U&amp;hl=pt_BR&amp;fs=1&amp;rel=0" type="application/x-shockwave-flash" allowscriptaccess="always" allowfullscreen="true" width="425" height="344"&gt;&lt;/embed&gt;&lt;/object&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1912665588425487533-7268277054363001560?l=openpci.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://openpci.blogspot.com/feeds/7268277054363001560/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://openpci.blogspot.com/2010/04/pci-data-security-standards-rock.html#comment-form' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/7268277054363001560'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/7268277054363001560'/><link rel='alternate' type='text/html' href='http://openpci.blogspot.com/2010/04/pci-data-security-standards-rock.html' title='PCI Data Security Standards Rock'/><author><name>Juliano Dapper</name><uri>http://www.blogger.com/profile/10510185774345485496</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/_PK_3xxN7mBs/TK_YPaMZ_RI/AAAAAAAAAKc/JZDVhdgI2EY/S220/DSC00011.JPG'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-1912665588425487533.post-8451770901624200699</id><published>2010-04-05T10:31:00.000-03:00</published><updated>2010-04-05T10:32:13.940-03:00</updated><title type='text'>Heartland Hacker Sentenced to 20 Years</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_PK_3xxN7mBs/S7nmVu1Y3II/AAAAAAAAAJM/jn-qzsSVI0c/s1600/2344_albert_gonzalez.jpg"&gt;&lt;img style="float:left; margin:0 10px 10px 0;cursor:pointer; cursor:hand;width: 175px; height: 175px;" src="http://2.bp.blogspot.com/_PK_3xxN7mBs/S7nmVu1Y3II/AAAAAAAAAJM/jn-qzsSVI0c/s400/2344_albert_gonzalez.jpg" border="0" alt=""id="BLOGGER_PHOTO_ID_5456645684559666306" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;http://www.bankinfosecurity.com/articles.php?art_id=2344&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1912665588425487533-8451770901624200699?l=openpci.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://openpci.blogspot.com/feeds/8451770901624200699/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://openpci.blogspot.com/2010/04/heartland-hacker-sentenced-to-20-years.html#comment-form' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/8451770901624200699'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/8451770901624200699'/><link rel='alternate' type='text/html' href='http://openpci.blogspot.com/2010/04/heartland-hacker-sentenced-to-20-years.html' title='Heartland Hacker Sentenced to 20 Years'/><author><name>Juliano Dapper</name><uri>http://www.blogger.com/profile/10510185774345485496</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/_PK_3xxN7mBs/TK_YPaMZ_RI/AAAAAAAAAKc/JZDVhdgI2EY/S220/DSC00011.JPG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/_PK_3xxN7mBs/S7nmVu1Y3II/AAAAAAAAAJM/jn-qzsSVI0c/s72-c/2344_albert_gonzalez.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-1912665588425487533.post-7084844197559612364</id><published>2009-12-16T08:49:00.003-02:00</published><updated>2009-12-16T08:55:14.218-02:00</updated><title type='text'>Continuidade</title><content type='html'>Olá pessoal,&lt;br /&gt;&lt;br /&gt;Estive afastado por algum tempo devido a entrega do meu trabalho de conclusão, sendo que ontem foi a minha banca final. Recebi nota 9 pelo trabalho do OpenPCI Toolkit, uma nota que considero muito boa, principalmente por se tratar de um projeto novo e quem tem muito a crescer ainda.&lt;br /&gt;&lt;br /&gt;Como estamos chegando em época de natal,ano novo e férias, não vou conseguir trabalhar muito no OpenPCI, mas acredito que no começo de 2010 estarei retomando as atividades e planejando a nova versão.&lt;br /&gt;&lt;br /&gt;Desejo a todos um ótimo natal com suas famílias e que 2010 seja um ano repleto de novos desafios e oportunidades.&lt;br /&gt;&lt;br /&gt;[]sss ...&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1912665588425487533-7084844197559612364?l=openpci.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://openpci.blogspot.com/feeds/7084844197559612364/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://openpci.blogspot.com/2009/12/continuidade.html#comment-form' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/7084844197559612364'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/7084844197559612364'/><link rel='alternate' type='text/html' href='http://openpci.blogspot.com/2009/12/continuidade.html' title='Continuidade'/><author><name>Juliano Dapper</name><uri>http://www.blogger.com/profile/10510185774345485496</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/_PK_3xxN7mBs/TK_YPaMZ_RI/AAAAAAAAAKc/JZDVhdgI2EY/S220/DSC00011.JPG'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-1912665588425487533.post-5620862585798925035</id><published>2009-11-19T09:14:00.001-02:00</published><updated>2009-11-19T09:15:59.565-02:00</updated><title type='text'>Second-hand ATM trade opens up fraud risk</title><content type='html'>&lt;object width="425" height="344"&gt;&lt;param name="movie" value="http://www.youtube.com/v/5zJRzSqad-A&amp;color1=0xb1b1b1&amp;color2=0xcfcfcf&amp;hl=en_US&amp;feature=player_embedded&amp;fs=1"&gt;&lt;/param&gt;&lt;param name="allowFullScreen" value="true"&gt;&lt;/param&gt;&lt;param name="allowScriptAccess" value="always"&gt;&lt;/param&gt;&lt;embed src="http://www.youtube.com/v/5zJRzSqad-A&amp;color1=0xb1b1b1&amp;color2=0xcfcfcf&amp;hl=en_US&amp;feature=player_embedded&amp;fs=1" type="application/x-shockwave-flash" allowfullscreen="true" allowScriptAccess="always" width="425" height="344"&gt;&lt;/embed&gt;&lt;/object&gt;&lt;br /&gt;&lt;br /&gt;Fonte:&lt;br /&gt;http://www.theregister.co.uk/2009/11/18/second_hand_atm_fraud_risk/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1912665588425487533-5620862585798925035?l=openpci.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://openpci.blogspot.com/feeds/5620862585798925035/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://openpci.blogspot.com/2009/11/second-hand-atm-trade-opens-up-fraud.html#comment-form' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/5620862585798925035'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/5620862585798925035'/><link rel='alternate' type='text/html' href='http://openpci.blogspot.com/2009/11/second-hand-atm-trade-opens-up-fraud.html' title='Second-hand ATM trade opens up fraud risk'/><author><name>Juliano Dapper</name><uri>http://www.blogger.com/profile/10510185774345485496</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/_PK_3xxN7mBs/TK_YPaMZ_RI/AAAAAAAAAKc/JZDVhdgI2EY/S220/DSC00011.JPG'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-1912665588425487533.post-716138338998147049</id><published>2009-10-21T09:11:00.005-02:00</published><updated>2009-10-21T09:24:49.990-02:00</updated><title type='text'>Questionário de avaliação</title><content type='html'>Após o lançamento da primeira versão do OpenPCI Toolkit, estou disponibilizando um pequeno questionário que será utilizado para avaliar se este projeto está atingindo seu objetivo inicial e também para implementar melhorias futuras.&lt;br /&gt;&lt;br /&gt;São apenas 4 perguntas e um espaço livre para comentários e sugestões.&lt;br /&gt;&lt;br /&gt;Conto com a participação de todos!&lt;br /&gt;&lt;br /&gt;Para acessar o questionário de avaliação clique aqui -&gt; &lt;a href="#" onclick="window.open('http://fs17.formsite.com/openpci/toolkit/index.html','Form', 'toolbar=no,width=600,height=400,left=20,top=20,screenX=20,screenY=20,status=no,scrollbars=yes,resizable=yes');return false"&gt;Questionário&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1912665588425487533-716138338998147049?l=openpci.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://openpci.blogspot.com/feeds/716138338998147049/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://openpci.blogspot.com/2009/10/questionario-de-avaliacao.html#comment-form' title='1 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/716138338998147049'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/716138338998147049'/><link rel='alternate' type='text/html' href='http://openpci.blogspot.com/2009/10/questionario-de-avaliacao.html' title='Questionário de avaliação'/><author><name>Juliano Dapper</name><uri>http://www.blogger.com/profile/10510185774345485496</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/_PK_3xxN7mBs/TK_YPaMZ_RI/AAAAAAAAAKc/JZDVhdgI2EY/S220/DSC00011.JPG'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-1912665588425487533.post-5965740356150771594</id><published>2009-10-18T18:24:00.028-02:00</published><updated>2009-10-23T09:28:12.396-02:00</updated><title type='text'>OpenPCI Toolkit disponível para download</title><content type='html'>A primeira versão do OpenPCI Toolkit já está disponível para download. Algumas informações importantes para que for utilizar a versão 1.0:&lt;br /&gt;&lt;br /&gt;1 - Esta versão ainda não possui instalada as ferramentas OpenIAM e StrongKey.&lt;br /&gt;2 - O usuário padrão do sistema é &lt;span style="font-style:italic;"&gt;&lt;span style="font-weight:bold;"&gt;pci-dss&lt;/span&gt;&lt;/span&gt; e a senha é &lt;span style="font-style:italic;"&gt;&lt;span style="font-weight:bold;"&gt;compliance&lt;/span&gt;&lt;/span&gt;. Não se esqueça de trocar a senha!&lt;br /&gt;2 - A instalação só está funcionando quando a opção &lt;span style="font-style:italic;"&gt;&lt;span style="font-weight:bold;"&gt;live&lt;/span&gt;&lt;/span&gt; é selecionada na inicialização. Após carregar o ambiente gráfico, acesse o menu Ferramentas, Administração e clique em &lt;span style="font-style:italic;"&gt;&lt;span style="font-weight:bold;"&gt;Instalar o OpenPCI Toolkit no computador&lt;/span&gt;&lt;/span&gt;.&lt;br /&gt;3 - O md5 da imagem é &lt;span style="font-weight:bold;"&gt;0de268a71173a6fffa642e3724f745b3&lt;span style="font-style:italic;"&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Já estou trabalhando na nova versão e em breve estarei divulgando as novidades.&lt;br /&gt;&lt;br /&gt;A imagem ISO está disponível no site do Código Livre e em breve estará no FTP da Unicamp também.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Gostaria de agradecer ao pessoal do Código Livre e ao Rubens Queiroz (Dicas-L) pelo apoio na hospedagem da imagem ISO.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Dúvidas e sugestões podem ser encaminhadas aqui no blog ou pelo e-mail fjdapper@gmail.com&lt;span style="font-style:italic;"&gt;&lt;/span&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1912665588425487533-5965740356150771594?l=openpci.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://openpci.blogspot.com/feeds/5965740356150771594/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://openpci.blogspot.com/2009/10/openpci-toolkit-disponivel-para.html#comment-form' title='3 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/5965740356150771594'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/5965740356150771594'/><link rel='alternate' type='text/html' href='http://openpci.blogspot.com/2009/10/openpci-toolkit-disponivel-para.html' title='OpenPCI Toolkit disponível para download'/><author><name>Juliano Dapper</name><uri>http://www.blogger.com/profile/10510185774345485496</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/_PK_3xxN7mBs/TK_YPaMZ_RI/AAAAAAAAAKc/JZDVhdgI2EY/S220/DSC00011.JPG'/></author><thr:total>3</thr:total></entry><entry><id>tag:blogger.com,1999:blog-1912665588425487533.post-8158581007005295335</id><published>2009-10-01T08:35:00.004-03:00</published><updated>2009-10-01T09:25:09.855-03:00</updated><title type='text'>Retornando do sbseg</title><content type='html'>Retornei ontem de Campinas onde apresentei o OpenPCI Toolkit no sbseg 2009, evento realizado no centro de convenções da Unicamp.&lt;br /&gt;&lt;br /&gt;Apesar do pouco tempo (+-20 minutos) para apresentação, o resultado foi positivo. Conversei com alguns profissionais certificados pelo PCI Council (QSA - Qualified Security Assessors) e percebi que o projeto poderá ter uma boa aceitação pelas empresas e profissionais envolvidos com as atividades de adequação ao PCI DSS.&lt;br /&gt;&lt;br /&gt;Estou trabalhando para disponibilizar ainda na primeira quinzena de outubro a primeira versão do toolkit para que mais pessoas possam testar e avaliar.&lt;br /&gt;&lt;br /&gt;A apresentação utilizada está disponível no slideshare.&lt;br /&gt;&lt;br /&gt;&lt;div style="width:425px;text-align:left" id="__ss_2103369"&gt;&lt;a style="font:14px Helvetica,Arial,Sans-serif;display:block;margin:12px 0 3px 0;text-decoration:underline;" href="http://www.slideshare.net/fjdapper/apresentao-sbseg-2009" title="Apresentação Sbseg 2009"&gt;Apresentação Sbseg 2009&lt;/a&gt;&lt;object style="margin:0px" width="425" height="355"&gt;&lt;param name="movie" value="http://static.slidesharecdn.com/swf/ssplayer2.swf?doc=sbseg2009-091001065240-phpapp02&amp;stripped_title=apresentao-sbseg-2009" /&gt;&lt;param name="allowFullScreen" value="true"/&gt;&lt;param name="allowScriptAccess" value="always"/&gt;&lt;embed src="http://static.slidesharecdn.com/swf/ssplayer2.swf?doc=sbseg2009-091001065240-phpapp02&amp;stripped_title=apresentao-sbseg-2009" type="application/x-shockwave-flash" allowscriptaccess="always" allowfullscreen="true" width="425" height="355"&gt;&lt;/embed&gt;&lt;/object&gt;&lt;div style="font-size:11px;font-family:tahoma,arial;height:26px;padding-top:2px;"&gt;View more &lt;a style="text-decoration:underline;" href="http://www.slideshare.net/"&gt;presentations&lt;/a&gt; from &lt;a style="text-decoration:underline;" href="http://www.slideshare.net/fjdapper"&gt;fjdapper&lt;/a&gt;.&lt;/div&gt;&lt;/div&gt;&lt;br /&gt;&lt;br /&gt;Em breve, mais informações!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1912665588425487533-8158581007005295335?l=openpci.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://openpci.blogspot.com/feeds/8158581007005295335/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://openpci.blogspot.com/2009/10/retornando-do-sbseg.html#comment-form' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/8158581007005295335'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/8158581007005295335'/><link rel='alternate' type='text/html' href='http://openpci.blogspot.com/2009/10/retornando-do-sbseg.html' title='Retornando do sbseg'/><author><name>Juliano Dapper</name><uri>http://www.blogger.com/profile/10510185774345485496</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/_PK_3xxN7mBs/TK_YPaMZ_RI/AAAAAAAAAKc/JZDVhdgI2EY/S220/DSC00011.JPG'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-1912665588425487533.post-2352419812053151331</id><published>2009-09-28T09:50:00.002-03:00</published><updated>2009-09-28T09:53:05.297-03:00</updated><title type='text'>OpenPCI Toolkit Tools</title><content type='html'>Publiquei no youtube mais um vídeo da execução de algumas ferramentas que fazem parte do OpenPCI Toolkit.&lt;br /&gt;&lt;br /&gt;&lt;object width="425" height="344"&gt;&lt;param name="movie" value="http://www.youtube.com/v/6oKDoDtz2to&amp;hl=pt-br&amp;fs=1&amp;"&gt;&lt;/param&gt;&lt;param name="allowFullScreen" value="true"&gt;&lt;/param&gt;&lt;param name="allowscriptaccess" value="always"&gt;&lt;/param&gt;&lt;embed src="http://www.youtube.com/v/6oKDoDtz2to&amp;hl=pt-br&amp;fs=1&amp;" type="application/x-shockwave-flash" allowscriptaccess="always" allowfullscreen="true" width="425" height="344"&gt;&lt;/embed&gt;&lt;/object&gt;&lt;br /&gt;&lt;br /&gt;Amanhã estarei na Unicamp em Campinas participando do SBSEG e acredito que na primeira semana de outubro estarei disponibilizando uma imagem ISO para quem quiser testar o OpenPCI Toolkit.&lt;br /&gt;&lt;br /&gt;[]sss ...&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1912665588425487533-2352419812053151331?l=openpci.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://openpci.blogspot.com/feeds/2352419812053151331/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://openpci.blogspot.com/2009/09/openpci-toolkit-tools.html#comment-form' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/2352419812053151331'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/2352419812053151331'/><link rel='alternate' type='text/html' href='http://openpci.blogspot.com/2009/09/openpci-toolkit-tools.html' title='OpenPCI Toolkit Tools'/><author><name>Juliano Dapper</name><uri>http://www.blogger.com/profile/10510185774345485496</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/_PK_3xxN7mBs/TK_YPaMZ_RI/AAAAAAAAAKc/JZDVhdgI2EY/S220/DSC00011.JPG'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-1912665588425487533.post-7508049211623193546</id><published>2009-09-25T09:21:00.001-03:00</published><updated>2009-09-25T09:22:46.152-03:00</updated><title type='text'>OpenPCI Toolkit em ação</title><content type='html'>Coloquei no youtube um pequeno vídeo que mostra na prática o funcionamento básico do OpenPCI Toolkit.&lt;br /&gt;&lt;br /&gt;&lt;object width="425" height="344"&gt;&lt;param name="movie" value="http://www.youtube.com/v/qqwlOUu3_Qs&amp;hl=pt-br&amp;fs=1&amp;"&gt;&lt;/param&gt;&lt;param name="allowFullScreen" value="true"&gt;&lt;/param&gt;&lt;param name="allowscriptaccess" value="always"&gt;&lt;/param&gt;&lt;embed src="http://www.youtube.com/v/qqwlOUu3_Qs&amp;hl=pt-br&amp;fs=1&amp;" type="application/x-shockwave-flash" allowscriptaccess="always" allowfullscreen="true" width="425" height="344"&gt;&lt;/embed&gt;&lt;/object&gt;&lt;br /&gt;&lt;br /&gt;Em breve novos vídeos!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1912665588425487533-7508049211623193546?l=openpci.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://openpci.blogspot.com/feeds/7508049211623193546/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://openpci.blogspot.com/2009/09/openpci-toolkit-em-acao.html#comment-form' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/7508049211623193546'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/7508049211623193546'/><link rel='alternate' type='text/html' href='http://openpci.blogspot.com/2009/09/openpci-toolkit-em-acao.html' title='OpenPCI Toolkit em ação'/><author><name>Juliano Dapper</name><uri>http://www.blogger.com/profile/10510185774345485496</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/_PK_3xxN7mBs/TK_YPaMZ_RI/AAAAAAAAAKc/JZDVhdgI2EY/S220/DSC00011.JPG'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-1912665588425487533.post-2481638652091836092</id><published>2009-09-03T13:46:00.018-03:00</published><updated>2009-09-11T14:47:30.589-03:00</updated><title type='text'>Novas telas do OpenPCI Toolkit</title><content type='html'>Estou colocando mais algumas telas do ambiente de trabalho do OpenPCI Toolkit. Provavelmente irei mudar algumas coisas na parte de apresentação para o usuário, mas ainda não tenho definido como ficará o layout final.&lt;br /&gt;&lt;br /&gt;1 - Tela de login&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_PK_3xxN7mBs/SqEJRVuYSfI/AAAAAAAAAD4/LiYfYK93pfE/s1600-h/login_toolkit.bmp"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 400px; height: 266px;" src="http://1.bp.blogspot.com/_PK_3xxN7mBs/SqEJRVuYSfI/AAAAAAAAAD4/LiYfYK93pfE/s400/login_toolkit.bmp" border="0" alt=""id="BLOGGER_PHOTO_ID_5377589623551183346" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;2 - Área de trabalho&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/_PK_3xxN7mBs/SqqNJDZbv0I/AAAAAAAAAF4/cThciPm-BOM/s1600-h/wallpaper.bmp"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 400px; height: 266px;" src="http://4.bp.blogspot.com/_PK_3xxN7mBs/SqqNJDZbv0I/AAAAAAAAAF4/cThciPm-BOM/s400/wallpaper.bmp" border="0" alt=""id="BLOGGER_PHOTO_ID_5380267891517800258" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Sugestões são muito bem vindas!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1912665588425487533-2481638652091836092?l=openpci.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://openpci.blogspot.com/feeds/2481638652091836092/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://openpci.blogspot.com/2009/09/algumas-telas-do-openpci-toolkit.html#comment-form' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/2481638652091836092'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/2481638652091836092'/><link rel='alternate' type='text/html' href='http://openpci.blogspot.com/2009/09/algumas-telas-do-openpci-toolkit.html' title='Novas telas do OpenPCI Toolkit'/><author><name>Juliano Dapper</name><uri>http://www.blogger.com/profile/10510185774345485496</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/_PK_3xxN7mBs/TK_YPaMZ_RI/AAAAAAAAAKc/JZDVhdgI2EY/S220/DSC00011.JPG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_PK_3xxN7mBs/SqEJRVuYSfI/AAAAAAAAAD4/LiYfYK93pfE/s72-c/login_toolkit.bmp' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-1912665588425487533.post-5907176134177234233</id><published>2009-08-28T16:50:00.012-03:00</published><updated>2009-08-28T17:28:11.546-03:00</updated><title type='text'>Skimming Prevention: Best Practices for Merchants</title><content type='html'>O PCI Council disponibilizou um novo documento explicando como funciona as técnicas de &lt;span style="font-style:italic;"&gt;skimming&lt;/span&gt; e as melhores práticas para proteção nos estabelecimentos comerciais.&lt;br /&gt;&lt;br /&gt;As técnicas de skimming consistem basicamente em duas atividades por parte dos &lt;span style="font-style:italic;"&gt;carders&lt;/span&gt;:&lt;br /&gt;&lt;br /&gt;1 - A clonagem do cartão em terminais de venda (POS) ou nos terminais de bancos (ATM) através do famoso chupa-cabra que irá copiar os dados contidos na tarja magnética.&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_PK_3xxN7mBs/Spg4N2htRjI/AAAAAAAAAC4/-YauemabPEg/s1600-h/sk1.bmp"&gt;&lt;img style="cursor:pointer; cursor:hand;width: 400px; height: 266px;" src="http://3.bp.blogspot.com/_PK_3xxN7mBs/Spg4N2htRjI/AAAAAAAAAC4/-YauemabPEg/s400/sk1.bmp" border="0" alt=""id="BLOGGER_PHOTO_ID_5375107965893035570" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;2 - A captura da senha pessoal do portador do cartão (PIN), através de câmeras de vídeo instaladas perto do terminal.&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_PK_3xxN7mBs/Spg4jOk8-oI/AAAAAAAAADA/YjUJ9r7M804/s1600-h/sk2.bmp"&gt;&lt;img style="cursor:pointer; cursor:hand;width: 400px; height: 250px;" src="http://3.bp.blogspot.com/_PK_3xxN7mBs/Spg4jOk8-oI/AAAAAAAAADA/YjUJ9r7M804/s400/sk2.bmp" border="0" alt=""id="BLOGGER_PHOTO_ID_5375108333126351490" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Dicas úteis:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;- Não aceite ajuda de estranhos quando estiver utilizando algum terminal eletrônico do banco. Caso precise de auxílio, procure por um funcionário do banco.&lt;br /&gt;- Cuide se ao digitar sua senha pessoal, alguém está muito próximo de você.&lt;br /&gt;- Cobre do gerente do seu banco sobre os recursos de segurança física disponíveis na agência, como vigias e câmeras de vídeo.&lt;br /&gt;- Não perca de vista o seu cartão. Caso seja necessário, acompanhe o funcionário do estabelecimento até o POS.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Links relacionados:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;https://www.pcisecuritystandards.org/docs/skimming_prevention_form.zip&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1912665588425487533-5907176134177234233?l=openpci.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://openpci.blogspot.com/feeds/5907176134177234233/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://openpci.blogspot.com/2009/08/skimming-prevention-best-practices-for.html#comment-form' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/5907176134177234233'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/5907176134177234233'/><link rel='alternate' type='text/html' href='http://openpci.blogspot.com/2009/08/skimming-prevention-best-practices-for.html' title='Skimming Prevention: Best Practices for Merchants'/><author><name>Juliano Dapper</name><uri>http://www.blogger.com/profile/10510185774345485496</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/_PK_3xxN7mBs/TK_YPaMZ_RI/AAAAAAAAAKc/JZDVhdgI2EY/S220/DSC00011.JPG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_PK_3xxN7mBs/Spg4N2htRjI/AAAAAAAAAC4/-YauemabPEg/s72-c/sk1.bmp' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-1912665588425487533.post-4123085387652518386</id><published>2009-08-26T14:18:00.007-03:00</published><updated>2009-08-28T16:09:47.450-03:00</updated><title type='text'>OpenPCI Toolkit no SBSeg 2009</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_PK_3xxN7mBs/SpgrcjFgsYI/AAAAAAAAACo/cWDeXbcoEiA/s1600-h/header.png"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 400px; height: 64px;" src="http://1.bp.blogspot.com/_PK_3xxN7mBs/SpgrcjFgsYI/AAAAAAAAACo/cWDeXbcoEiA/s400/header.png" border="0" alt=""id="BLOGGER_PHOTO_ID_5375093924721373570" /&gt;&lt;/a&gt;&lt;br /&gt;Em Setembro estarei em Campinas (Unicamp), participando do IX Simpósio Brasileiro em Segurança da Informação e de Sistemas Computacionais (SBSeg) para apresentar o OpenPCI Toolkit. Acredito que o interesse por assuntos envolvendo fraudes com cartões e a necessidade de aderência ao PCI DSS aumente cada vez mais, seja no meio acadêmico, como na sociedade em geral.&lt;br /&gt;&lt;br /&gt;Também lembrando que este trabalho tem co-autoria do professor e coordenador do curso superior em Segurança da Informação (Unisinos), Leonardo Lemes Fagundes (Auditor Líder ISO 27001).&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;&lt;span style="font-style:italic;"&gt;Dear  Juliano Dapper,&lt;br /&gt;&lt;br /&gt;We are delighted to inform you that your submission #60694 to SBSeg 2009, "OpenPCI: Um toolkit para atender os requisitos técnicos do PCI DSS", has been accepted. Congratulations! This year we had 22 extended abstract submissions, which went through a rigorous, double-blind selection process by the Technical Program Committee. Out of the 22 abstracts submitted, only 9 were accepted.&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Links relacionados:&lt;br /&gt;&lt;br /&gt;http://sbseg2009.inf.ufsm.br/sbseg2009/&lt;br /&gt;http://www.exatec.unisinos.br/_professores/gerador.php?professor=leo&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1912665588425487533-4123085387652518386?l=openpci.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://openpci.blogspot.com/feeds/4123085387652518386/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://openpci.blogspot.com/2009/08/openpci-toolkit-no-sbseg-2009.html#comment-form' title='1 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/4123085387652518386'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/4123085387652518386'/><link rel='alternate' type='text/html' href='http://openpci.blogspot.com/2009/08/openpci-toolkit-no-sbseg-2009.html' title='OpenPCI Toolkit no SBSeg 2009'/><author><name>Juliano Dapper</name><uri>http://www.blogger.com/profile/10510185774345485496</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/_PK_3xxN7mBs/TK_YPaMZ_RI/AAAAAAAAAKc/JZDVhdgI2EY/S220/DSC00011.JPG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_PK_3xxN7mBs/SpgrcjFgsYI/AAAAAAAAACo/cWDeXbcoEiA/s72-c/header.png' height='72' width='72'/><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-1912665588425487533.post-6796939271755110210</id><published>2009-08-21T17:22:00.002-03:00</published><updated>2009-08-21T17:28:18.755-03:00</updated><title type='text'>Radisson Hotels Suffer Data Breach</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_PK_3xxN7mBs/So8DXsx_Z8I/AAAAAAAAACg/4HQp4ic9-WE/s1600-h/image001.jpg"&gt;&lt;img style="float:left; margin:0 10px 10px 0;cursor:pointer; cursor:hand;width: 172px; height: 68px;" src="http://3.bp.blogspot.com/_PK_3xxN7mBs/So8DXsx_Z8I/AAAAAAAAACg/4HQp4ic9-WE/s400/image001.jpg" border="0" alt=""id="BLOGGER_PHOTO_ID_5372516586169001922" /&gt;&lt;/a&gt;&lt;br /&gt;Mais um caso de comprometimento de dados de cartão, agora em uma rede de hotéis (USA e Canada).&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;"Between November 2008 and May 2009, the computer systems of some Radisson Hotels &amp; Resorts in the U.S. and Canada were accessed without authorization. This past spring, the company was able to confirm an intrusion. The investigation is ongoing".&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;"The accessed computer systems contained guest information such as the name printed on a credit or debit card, the account number and the expiration date on the card. "We do not know, however, whether a particular name, credit or debit card number or card expiration date were in fact accessed or taken," he says".&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;The hotel says at this time, "it appears to be an unauthorized attack from an outside source, and have no reason to believe it was an insider."&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Links relacionados:&lt;br /&gt;&lt;br /&gt;http://www.bankinfosecurity.com/articles.php?art_id=1721&lt;br /&gt;http://www.radisson.com/openletter/openletter.html&lt;br /&gt;http://www.radisson.com/openletter/openletter-faq.html&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1912665588425487533-6796939271755110210?l=openpci.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://openpci.blogspot.com/feeds/6796939271755110210/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://openpci.blogspot.com/2009/08/radisson-hotels-suffer-data-breach.html#comment-form' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/6796939271755110210'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/6796939271755110210'/><link rel='alternate' type='text/html' href='http://openpci.blogspot.com/2009/08/radisson-hotels-suffer-data-breach.html' title='Radisson Hotels Suffer Data Breach'/><author><name>Juliano Dapper</name><uri>http://www.blogger.com/profile/10510185774345485496</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/_PK_3xxN7mBs/TK_YPaMZ_RI/AAAAAAAAAKc/JZDVhdgI2EY/S220/DSC00011.JPG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_PK_3xxN7mBs/So8DXsx_Z8I/AAAAAAAAACg/4HQp4ic9-WE/s72-c/image001.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-1912665588425487533.post-1907494478427700509</id><published>2009-08-19T08:26:00.005-03:00</published><updated>2009-08-19T09:11:53.134-03:00</updated><title type='text'>Racker roubou dados de milhões de cartões de crédito</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_PK_3xxN7mBs/SovsA5nqgJI/AAAAAAAAACY/r_zPkg2_UC4/s1600-h/albert-gonzalez.jpg"&gt;&lt;img style="float:left; margin:0 10px 10px 0;cursor:pointer; cursor:hand;width: 235px; height: 270px;" src="http://3.bp.blogspot.com/_PK_3xxN7mBs/SovsA5nqgJI/AAAAAAAAACY/r_zPkg2_UC4/s400/albert-gonzalez.jpg" border="0" alt=""id="BLOGGER_PHOTO_ID_5371646480780787858" /&gt;&lt;/a&gt;&lt;br /&gt;Apesar do erro de escrita (Racker), a notícia é muito relevante e já foi amplamente divulgada em diversos sites do mundo. BTW, o termo mais correto para este tipo de quadrilha é &lt;span style="font-weight:bold;"&gt;carders&lt;/span&gt;.&lt;br /&gt;&lt;br /&gt;Coloco aqui algumas partes do que diz um documento da corte de New Jersey (USA) sobre o caso:&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Defendant Albert Gonzalez, a/k/a “segvec,” a/k/a “soupnazi,” a/k/a “j4guar17” (“GONZALEZ”), resided in or near Miami, Florida.&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Methods of Hacking Utilized by Defendants.&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style:italic;"&gt;“SQL Injection Attacks” were methods of hacking into and gaining unauthorized access to computers connected to the Internet.&lt;br /&gt;&lt;br /&gt;“Malware” was malicious computer software programmed to, among other things, identify, store, and export information on computers that were hacked, including information such as credit and debit card numbers and corresponding personal identification information of cardholders (“Card Data”), as well as to evade detection by anti-virus programs running on those computers.&lt;br /&gt;&lt;br /&gt;Beginning on or about December 26, 2007, Heartland was the victim of a SQL&lt;br /&gt;- 3 - Injection Attack on its corporate computer network that resulted in malware being placed on its payment processing system and the theft of more than approximately 130 million credit and debit card numbers and corresponding Card Data.&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Links relacionados:&lt;br /&gt;&lt;br /&gt;http://jornalnacional.globo.com/Telejornais/JN/0,,MUL1271975-10406,00-RACKER+ROUBOU+DADOS+DE+MILHOES+DE+CARTOES+DE+CREDITO.html&lt;br /&gt;&lt;br /&gt;http://www.wired.com/threatlevel/2009/08/tjx-hacker-charged-with-heartland/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1912665588425487533-1907494478427700509?l=openpci.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://openpci.blogspot.com/feeds/1907494478427700509/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://openpci.blogspot.com/2009/08/racker-roubou-dados-de-milhoes-de.html#comment-form' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/1907494478427700509'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/1907494478427700509'/><link rel='alternate' type='text/html' href='http://openpci.blogspot.com/2009/08/racker-roubou-dados-de-milhoes-de.html' title='Racker roubou dados de milhões de cartões de crédito'/><author><name>Juliano Dapper</name><uri>http://www.blogger.com/profile/10510185774345485496</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/_PK_3xxN7mBs/TK_YPaMZ_RI/AAAAAAAAAKc/JZDVhdgI2EY/S220/DSC00011.JPG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_PK_3xxN7mBs/SovsA5nqgJI/AAAAAAAAACY/r_zPkg2_UC4/s72-c/albert-gonzalez.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-1912665588425487533.post-622984181728317260</id><published>2009-08-18T08:47:00.008-03:00</published><updated>2009-09-10T18:16:54.469-03:00</updated><title type='text'>Self-Assessment Questionnaire</title><content type='html'>O &lt;span style="font-style:italic;"&gt;Self-Assessment Questionnaire&lt;/span&gt; (SAQ) é um documento disponibilizado pelo PCI Council e que pode ser utilizado para a auto-avaliação das empresas (Merchant e Service Providers) em relação ao seus nível de conformidade com o PCI DSS.&lt;br /&gt;&lt;br /&gt;O SAQ será a base para a construção do &lt;span style="font-weight:bold;"&gt;Instrumento para Análise de Aderência&lt;/span&gt; com o PCI DSS disponível no OpenPCI Toolkit.&lt;br /&gt;&lt;br /&gt;Após marcar quais requisitos do PCI DSS a empresa ainda não atende, o instrumento para análise de aderência irá gerar um relatório de não-conformidade, indicando qual ferramenta disponível no &lt;span style="font-style:italic;"&gt;toolkit&lt;/span&gt; poderá ser utilizada para atender a não-conformidade.&lt;br /&gt;&lt;br /&gt;Mas lembre-se! O foco do OpenPCI Toolkit é auxiliar &lt;span style="font-weight:bold;"&gt;somente&lt;/span&gt; no atendimento dos requisitos técnicos do PCI DSS, como implementação de firewall, análise de vulnerabilidades, etc.&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_PK_3xxN7mBs/SqlstseQvEI/AAAAAAAAAE4/DsBdITb75yQ/s1600-h/saq.bmp"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 400px; height: 200px;" src="http://2.bp.blogspot.com/_PK_3xxN7mBs/SqlstseQvEI/AAAAAAAAAE4/DsBdITb75yQ/s400/saq.bmp" border="0" alt=""id="BLOGGER_PHOTO_ID_5379950762158767170" /&gt;&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1912665588425487533-622984181728317260?l=openpci.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://openpci.blogspot.com/feeds/622984181728317260/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://openpci.blogspot.com/2009/08/self-assessment-questionnaire.html#comment-form' title='1 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/622984181728317260'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/622984181728317260'/><link rel='alternate' type='text/html' href='http://openpci.blogspot.com/2009/08/self-assessment-questionnaire.html' title='Self-Assessment Questionnaire'/><author><name>Juliano Dapper</name><uri>http://www.blogger.com/profile/10510185774345485496</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/_PK_3xxN7mBs/TK_YPaMZ_RI/AAAAAAAAAKc/JZDVhdgI2EY/S220/DSC00011.JPG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/_PK_3xxN7mBs/SqlstseQvEI/AAAAAAAAAE4/DsBdITb75yQ/s72-c/saq.bmp' height='72' width='72'/><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-1912665588425487533.post-7849499017259753392</id><published>2009-08-10T10:24:00.003-03:00</published><updated>2009-08-10T10:37:40.860-03:00</updated><title type='text'>Não basta ser pai, tem que participar.</title><content type='html'>Tinha um comercial antigo da Gelol que usava essa frase e podemos trazer ela para o contexto dos meios de pagamento eletrônico.&lt;br /&gt;&lt;br /&gt;Não basta ser "compliant", tem que agir e melhorar nas questões relacionadas a proteção dos dados do portador do cartão.&lt;br /&gt;&lt;br /&gt;Não existe sistema 100% seguro, apesar de alguns mágicos da área de SI e TI venderem isso como uma verdade absoluta :-)&lt;br /&gt;&lt;br /&gt;http://www.bankinfosecurity.com/articles.php?art_id=1691&amp;pg=1&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1912665588425487533-7849499017259753392?l=openpci.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://openpci.blogspot.com/feeds/7849499017259753392/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://openpci.blogspot.com/2009/08/nao-basta-ser-pai-tem-que-participar.html#comment-form' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/7849499017259753392'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/7849499017259753392'/><link rel='alternate' type='text/html' href='http://openpci.blogspot.com/2009/08/nao-basta-ser-pai-tem-que-participar.html' title='Não basta ser pai, tem que participar.'/><author><name>Juliano Dapper</name><uri>http://www.blogger.com/profile/10510185774345485496</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/_PK_3xxN7mBs/TK_YPaMZ_RI/AAAAAAAAAKc/JZDVhdgI2EY/S220/DSC00011.JPG'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-1912665588425487533.post-5952417951648100136</id><published>2009-08-06T21:57:00.001-03:00</published><updated>2009-08-06T21:57:55.934-03:00</updated><title type='text'>Clonagem de cartões no Brasil aumenta quase 50%</title><content type='html'>Bandidos fingem que são técnicos de manutenção e substituem os aparelhos por outros preparados para fraude. Nos caixas eletrônicos, trocam peças e roubam números e senhas.&lt;br /&gt;&lt;br /&gt;http://jornalnacional.globo.com/Telejornais/JN/0,,MUL1257829-10406,00-CLONAGEM+DE+CARTOES+NO+BRASIL+AUMENTA+QUASE.html&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1912665588425487533-5952417951648100136?l=openpci.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://openpci.blogspot.com/feeds/5952417951648100136/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://openpci.blogspot.com/2009/08/clonagem-de-cartoes-no-brasil-aumenta.html#comment-form' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/5952417951648100136'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/5952417951648100136'/><link rel='alternate' type='text/html' href='http://openpci.blogspot.com/2009/08/clonagem-de-cartoes-no-brasil-aumenta.html' title='Clonagem de cartões no Brasil aumenta quase 50%'/><author><name>Juliano Dapper</name><uri>http://www.blogger.com/profile/10510185774345485496</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/_PK_3xxN7mBs/TK_YPaMZ_RI/AAAAAAAAAKc/JZDVhdgI2EY/S220/DSC00011.JPG'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-1912665588425487533.post-3125921195865682096</id><published>2009-08-06T09:11:00.001-03:00</published><updated>2009-08-06T09:12:38.380-03:00</updated><title type='text'>The Real Cost of Data Breach ... continuação</title><content type='html'>Da série, quanto custa não investir em segurança.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Heartland Says Breach Has Cost It $32 Million This Year, Including $22.1 Million In Card Brand Fines, Settlement Offer.&lt;br /&gt;&lt;br /&gt;Heartland Payment Systems on Tuesday (Aug. 4) said it spent $32 million this year paying for costs related to the major data breach it disclosed in January, including $22.1 million to cover fines from key payment card brands and a settlement offer. Heartland did not say how the $22.1 million was split between the fines and the settlement offer, but it did provide clues.&lt;br /&gt;&lt;br /&gt;For example, the breach costs of just the second quarter came to $19.4 million and it said that the “majority” of those costs was for the settlement offer, suggesting that the settlement was more than $9.7 million. Legal fees make that precise calculation tricky as well as the lack of a percentage of that majority. “The remainder of the expenses and accruals related to the Processing System Intrusion recorded in the three and six months ended June 30, 2009 were primarily for legal fees and costs the Company incurred for investigations, remedial actions and crisis management services,” Heartland said.&lt;br /&gt;&lt;span style="font-style:italic;"&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;Fonte:&lt;br /&gt;http://www.storefrontbacktalk.com/securityfraud/heartland-says-breach-has-cost-it-32-million-this-year-including-22-1-million-in-card-brand-fines-settlement-offer/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1912665588425487533-3125921195865682096?l=openpci.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://openpci.blogspot.com/feeds/3125921195865682096/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://openpci.blogspot.com/2009/08/real-cost-of-data-breach-continuacao.html#comment-form' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/3125921195865682096'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/3125921195865682096'/><link rel='alternate' type='text/html' href='http://openpci.blogspot.com/2009/08/real-cost-of-data-breach-continuacao.html' title='The Real Cost of Data Breach ... continuação'/><author><name>Juliano Dapper</name><uri>http://www.blogger.com/profile/10510185774345485496</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/_PK_3xxN7mBs/TK_YPaMZ_RI/AAAAAAAAAKc/JZDVhdgI2EY/S220/DSC00011.JPG'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-1912665588425487533.post-6997257022508342274</id><published>2009-08-04T13:22:00.002-03:00</published><updated>2009-08-04T13:28:51.028-03:00</updated><title type='text'>The Real Cost of Data Breach</title><content type='html'>&lt;span style="font-weight:bold;"&gt;&lt;span style="font-style:italic;"&gt;what is the real cost of data breach? The short answer is more than you think, rising all the time, and more likely to hit you than you’d like to believe.&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;É caro investir em segurança? Seu diretor não consegue entender porque motivos ele deveria investir em treinamento/educação para os colaboradores, apoiar a criação de um SGSI (Sistema de Gestão de Segurança da Informação) ou o seu programa de compliance com o PCI DSS ?&lt;br /&gt;&lt;br /&gt;Talvez o artigo do Robert Halsey ajude ele :-)&lt;br /&gt;&lt;br /&gt;http://www.pcicomplianceguide.org/merchants-20090416-cost-data-breach.php&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1912665588425487533-6997257022508342274?l=openpci.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://openpci.blogspot.com/feeds/6997257022508342274/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://openpci.blogspot.com/2009/08/real-cost-of-data-breach.html#comment-form' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/6997257022508342274'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/6997257022508342274'/><link rel='alternate' type='text/html' href='http://openpci.blogspot.com/2009/08/real-cost-of-data-breach.html' title='The Real Cost of Data Breach'/><author><name>Juliano Dapper</name><uri>http://www.blogger.com/profile/10510185774345485496</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/_PK_3xxN7mBs/TK_YPaMZ_RI/AAAAAAAAAKc/JZDVhdgI2EY/S220/DSC00011.JPG'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-1912665588425487533.post-5971159503959471157</id><published>2009-08-03T22:29:00.006-03:00</published><updated>2009-08-03T22:44:03.168-03:00</updated><title type='text'>Data Breach Report</title><content type='html'>Pesquisei alguns casos de comprometimento de cartões de crédito e débito nos últimos anos. Algumas das empresas envolvidas publicaram notas oficiais e até criaram sites específicos para divulgar o incidente. A pesquisa ainda continua ....&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_PK_3xxN7mBs/SneQhMg9LEI/AAAAAAAAABo/vJz4eG9FHOA/s1600-h/data_breach.bmp"&gt;&lt;img style="float:left; margin:0 10px 10px 0;cursor:pointer; cursor:hand;width: 400px; height: 147px;" src="http://3.bp.blogspot.com/_PK_3xxN7mBs/SneQhMg9LEI/AAAAAAAAABo/vJz4eG9FHOA/s400/data_breach.bmp" border="0" alt=""id="BLOGGER_PHOTO_ID_5365916381004770370" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Fonte:&lt;br /&gt;https://www.pcisecuritystandards.org/pdfs/DataBreachesArticle.pdf&lt;br /&gt;http://www.bankinfosecurity.com&lt;br /&gt;http://www.careandprotect.com&lt;br /&gt;http://www.2008breach.com&lt;br /&gt;http://www.privacyrights.org/ar/ChronDataBreaches.htm&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1912665588425487533-5971159503959471157?l=openpci.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://openpci.blogspot.com/feeds/5971159503959471157/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://openpci.blogspot.com/2009/08/data-breach-report.html#comment-form' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/5971159503959471157'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/5971159503959471157'/><link rel='alternate' type='text/html' href='http://openpci.blogspot.com/2009/08/data-breach-report.html' title='Data Breach Report'/><author><name>Juliano Dapper</name><uri>http://www.blogger.com/profile/10510185774345485496</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/_PK_3xxN7mBs/TK_YPaMZ_RI/AAAAAAAAAKc/JZDVhdgI2EY/S220/DSC00011.JPG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_PK_3xxN7mBs/SneQhMg9LEI/AAAAAAAAABo/vJz4eG9FHOA/s72-c/data_breach.bmp' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-1912665588425487533.post-4579155903250402086</id><published>2009-08-02T21:10:00.004-03:00</published><updated>2009-08-02T21:39:32.902-03:00</updated><title type='text'>Quer conhecer mais sobre o PCI DSS?</title><content type='html'>O PCI DSS é um padrão de segurança criado pelas bandeiras de cartão de crédito com o objetivo de criar mecanismos para a proteção dos dados do portador de cartão.&lt;br /&gt;&lt;br /&gt;Para quem quer conhecer mais sobre este padrão e não dispõem de recursos para comprar livros, recomendo a leitura do artigo escrito pelo Eduardo Neves da Conviso.&lt;br /&gt;&lt;br /&gt;http://camargoneves.com/archives/3&lt;br /&gt;&lt;br /&gt;Boa leitura!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1912665588425487533-4579155903250402086?l=openpci.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://openpci.blogspot.com/feeds/4579155903250402086/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://openpci.blogspot.com/2009/08/quer-conhecer-mais-sobre-o-pci-dss.html#comment-form' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/4579155903250402086'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/4579155903250402086'/><link rel='alternate' type='text/html' href='http://openpci.blogspot.com/2009/08/quer-conhecer-mais-sobre-o-pci-dss.html' title='Quer conhecer mais sobre o PCI DSS?'/><author><name>Juliano Dapper</name><uri>http://www.blogger.com/profile/10510185774345485496</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/_PK_3xxN7mBs/TK_YPaMZ_RI/AAAAAAAAAKc/JZDVhdgI2EY/S220/DSC00011.JPG'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-1912665588425487533.post-8868978928962216608</id><published>2009-08-01T11:16:00.002-03:00</published><updated>2009-08-01T11:26:22.706-03:00</updated><title type='text'>Network Solutions Data Breach: 573,000 Cardholders at Risk</title><content type='html'>"&lt;span style="font-style:italic;"&gt;To add more pain to the breach, Network Solutions says it was PCI compliant at the time of the breach&lt;/span&gt;".&lt;br /&gt;&lt;br /&gt;O que será que eles querem provar com isso? De qualquer forma o Bob Russo (General Manager do PCI Council) respondeu.&lt;br /&gt;&lt;br /&gt;"&lt;span style="font-style:italic;"&gt;Just because a company has passed its compliance validation, it doesn't mean that the need for vigilance of security measures should stop.&lt;/span&gt;"&lt;br /&gt;&lt;br /&gt;"&lt;span style="font-style:italic;"&gt;Until a forensics investigation is completed, an organization can not comment accurately on its compliance status.&lt;/span&gt;"&lt;br /&gt;&lt;br /&gt;"&lt;span style="font-style:italic;"&gt;Security doesn't stop with PCI compliance validation&lt;/span&gt;."&lt;br /&gt;&lt;br /&gt;Mais informações em:&lt;br /&gt;http://www.bankinfosecurity.com/articles.php?art_id=1660&amp;rf=073109eb&lt;br /&gt;http://www.careandprotect.com&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1912665588425487533-8868978928962216608?l=openpci.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://openpci.blogspot.com/feeds/8868978928962216608/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://openpci.blogspot.com/2009/08/network-solutions-data-breach-573000.html#comment-form' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/8868978928962216608'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/8868978928962216608'/><link rel='alternate' type='text/html' href='http://openpci.blogspot.com/2009/08/network-solutions-data-breach-573000.html' title='Network Solutions Data Breach: 573,000 Cardholders at Risk'/><author><name>Juliano Dapper</name><uri>http://www.blogger.com/profile/10510185774345485496</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/_PK_3xxN7mBs/TK_YPaMZ_RI/AAAAAAAAAKc/JZDVhdgI2EY/S220/DSC00011.JPG'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-1912665588425487533.post-4641575624260982793</id><published>2009-07-31T21:48:00.000-03:00</published><updated>2009-07-31T22:40:54.751-03:00</updated><title type='text'>Clonagem de cartões</title><content type='html'>Clonagem, chupa-cabra, tarja magnética, carder ...&lt;br /&gt;&lt;br /&gt;Nomes estranhos para a maioria da população brasileira, mas que começam a ganhar espaço na mídia. Assista a dois vídeos que tratam deste assunto e aprenda a como tentar se proteger.&lt;br /&gt;&lt;br /&gt;http://www.grupoctv.com.br/g-ctv/cli/i_video100.asp?cod=56642&lt;br /&gt;&lt;br /&gt;http://www.clippingtv.com.br/upload/imagem_video/69351.wmv&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1912665588425487533-4641575624260982793?l=openpci.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://openpci.blogspot.com/feeds/4641575624260982793/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://openpci.blogspot.com/2009/07/clonagem-de-cartoes.html#comment-form' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/4641575624260982793'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/4641575624260982793'/><link rel='alternate' type='text/html' href='http://openpci.blogspot.com/2009/07/clonagem-de-cartoes.html' title='Clonagem de cartões'/><author><name>Juliano Dapper</name><uri>http://www.blogger.com/profile/10510185774345485496</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/_PK_3xxN7mBs/TK_YPaMZ_RI/AAAAAAAAAKc/JZDVhdgI2EY/S220/DSC00011.JPG'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-1912665588425487533.post-2045287030197664640</id><published>2009-07-31T17:56:00.000-03:00</published><updated>2009-07-31T18:05:48.902-03:00</updated><title type='text'>Blogs interessantes</title><content type='html'>Alguns blogs que costumo acompanhar e que abordam assuntos envolvendo o PCI DSS e a indústria de cartões de pagamento.&lt;br /&gt;&lt;br /&gt;http://www.bankinfosecurity.com/&lt;br /&gt;&lt;br /&gt;http://www.storefrontbacktalk.com/&lt;br /&gt;&lt;br /&gt;http://chuvakin.blogspot.com/&lt;br /&gt;&lt;br /&gt;http://pcianswers.com/&lt;br /&gt;&lt;br /&gt;http://www.paymentsystemsblog.com/&lt;br /&gt;&lt;br /&gt;http://blog.elementps.com/&lt;br /&gt;&lt;br /&gt;http://www.pcicomplianceguide.org/&lt;br /&gt;&lt;br /&gt;http://www.finextra.com/&lt;br /&gt;&lt;br /&gt;http://www.securitim.com/blog.html&lt;br /&gt;&lt;br /&gt;http://www.privacyrights.org/ar/ChronDataBreaches.htm&lt;br /&gt;&lt;br /&gt;Boa leitura!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1912665588425487533-2045287030197664640?l=openpci.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://openpci.blogspot.com/feeds/2045287030197664640/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://openpci.blogspot.com/2009/07/blogs-interessantes.html#comment-form' title='1 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/2045287030197664640'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/2045287030197664640'/><link rel='alternate' type='text/html' href='http://openpci.blogspot.com/2009/07/blogs-interessantes.html' title='Blogs interessantes'/><author><name>Juliano Dapper</name><uri>http://www.blogger.com/profile/10510185774345485496</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/_PK_3xxN7mBs/TK_YPaMZ_RI/AAAAAAAAAKc/JZDVhdgI2EY/S220/DSC00011.JPG'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-1912665588425487533.post-6035812754847638261</id><published>2009-07-31T17:40:00.000-03:00</published><updated>2009-07-31T17:47:40.926-03:00</updated><title type='text'>Livros sobre PCI DSS</title><content type='html'>Já comprei vários livros, alguns bons outros nem tanto. Quando o assunto é PCI DSS, a literatura ainda é pequena se comparado com outros tópicos da área de segurança.&lt;br /&gt;&lt;br /&gt;Indico aqui três publicações que podem auxiliar a conhecer um pouco mais sobre tudo que envolve este assunto.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Payment Card Industry Data Security Standard Handbook&lt;/span&gt;&lt;br /&gt;http://www.amazon.com/Payment-Industry-Security-Standard-Handbook/dp/0470260467/ref=sr_1_1?ie=UTF8&amp;s=books&amp;qid=1249072798&amp;sr=8-1&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;PCI Compliance: Understand and Implement Effective PCI Data Security Standard Compliance&lt;/span&gt;&lt;br /&gt;http://www.amazon.com/PCI-Compliance-Understand-Implement-Effective/dp/1597491659/ref=sr_1_3?ie=UTF8&amp;s=books&amp;qid=1249072798&amp;sr=8-3&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;PCI Compliance for Dummies&lt;/span&gt;&lt;br /&gt;http://www.qualys.com/forms/ebook/pcifordummies/&lt;br /&gt;&lt;br /&gt;Boa leitura!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1912665588425487533-6035812754847638261?l=openpci.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://openpci.blogspot.com/feeds/6035812754847638261/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://openpci.blogspot.com/2009/07/livros-sobre-pci-dss.html#comment-form' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/6035812754847638261'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/6035812754847638261'/><link rel='alternate' type='text/html' href='http://openpci.blogspot.com/2009/07/livros-sobre-pci-dss.html' title='Livros sobre PCI DSS'/><author><name>Juliano Dapper</name><uri>http://www.blogger.com/profile/10510185774345485496</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/_PK_3xxN7mBs/TK_YPaMZ_RI/AAAAAAAAAKc/JZDVhdgI2EY/S220/DSC00011.JPG'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-1912665588425487533.post-8753162675024923451</id><published>2009-07-31T17:16:00.000-03:00</published><updated>2009-07-31T17:19:53.086-03:00</updated><title type='text'>Artigo para Antebellum</title><content type='html'>Com um pouco de atraso, mas ainda está valendo :-)&lt;br /&gt;&lt;br /&gt;Artigo que escrevi para a revista eletrônica da ISSA Brasil, falando sobre o processo de conformidade com o PCI DSS.&lt;br /&gt;&lt;br /&gt;http://www.issabrasil.org/wp-content/uploads/2008/10/antebellum006.pdf&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1912665588425487533-8753162675024923451?l=openpci.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://openpci.blogspot.com/feeds/8753162675024923451/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://openpci.blogspot.com/2009/07/artigo-para-antebellum.html#comment-form' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/8753162675024923451'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/8753162675024923451'/><link rel='alternate' type='text/html' href='http://openpci.blogspot.com/2009/07/artigo-para-antebellum.html' title='Artigo para Antebellum'/><author><name>Juliano Dapper</name><uri>http://www.blogger.com/profile/10510185774345485496</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/_PK_3xxN7mBs/TK_YPaMZ_RI/AAAAAAAAAKc/JZDVhdgI2EY/S220/DSC00011.JPG'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-1912665588425487533.post-1578163665377340891</id><published>2009-07-31T16:23:00.000-03:00</published><updated>2009-07-31T17:20:29.069-03:00</updated><title type='text'>Starting OpenPCI Toolkit.</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/_PK_3xxN7mBs/SnNL09lTDuI/AAAAAAAAAAc/x8BR_hh9UbM/s1600-h/fluxo_toolkit_03.jpg"&gt;&lt;img style="float:left; margin:0 10px 10px 0;cursor:pointer; cursor:hand;width: 287px; height: 400px;" src="http://4.bp.blogspot.com/_PK_3xxN7mBs/SnNL09lTDuI/AAAAAAAAAAc/x8BR_hh9UbM/s400/fluxo_toolkit_03.jpg" border="0" alt=""id="BLOGGER_PHOTO_ID_5364714954384674530" /&gt;&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1912665588425487533-1578163665377340891?l=openpci.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://openpci.blogspot.com/feeds/1578163665377340891/comments/default' title='Postar comentários'/><link rel='replies' type='text/html' href='http://openpci.blogspot.com/2009/07/openpci-toolkit.html#comment-form' title='0 Comentários'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/1578163665377340891'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1912665588425487533/posts/default/1578163665377340891'/><link rel='alternate' type='text/html' href='http://openpci.blogspot.com/2009/07/openpci-toolkit.html' title='Starting OpenPCI Toolkit.'/><author><name>Juliano Dapper</name><uri>http://www.blogger.com/profile/10510185774345485496</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://4.bp.blogspot.com/_PK_3xxN7mBs/TK_YPaMZ_RI/AAAAAAAAAKc/JZDVhdgI2EY/S220/DSC00011.JPG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_PK_3xxN7mBs/SnNL09lTDuI/AAAAAAAAAAc/x8BR_hh9UbM/s72-c/fluxo_toolkit_03.jpg' height='72' width='72'/><thr:total>0</thr:total></entry></feed>
