As we all saw, New England supermarket chain, Hannaford Bros., recently discovered a potential 4.2 million credit card data breach; despite the fact that they had been told they were PCI compliant. According to this WSJ article, the data was exposed while transmitted over the (unencrypted) internal network. Anyone familiar with the PCI Standard is aware that it provides explicit instruction to “encrypt transmission of cardholder data across open, public networks,” which was a control measure that was in place.

