Reply to post: Great

Security industry too busy improving security to do security right

sysconfig

Great

Security standard determined by lowest common demoninator rather than what's necessary to be a useful and reasonably secure standard.

PCI wasn't a particularly strong standard to begin with. Now they're weakening themselves.

It takes about 15 minutes to get a replacement certificate and swap it out. As somebody else suggested above: if they had an incentive, they could do it.

So bottom line is: PCI is weak and has no teeth.

POST COMMENT House rules

Not a member of The Register? Create a new account here.

  • Enter your comment

  • Add an icon

Anonymous cowards cannot choose their icon