Stolen TJX data used in Florida crime spree
Police told retailer months before company informed customers
InfoWorld - Law enforcement officials in Florida have arrested six individuals suspected of carrying out a fraud scheme built around the misuse of credit card data stolen from retailer TJX Cos.
In partnership with the Gainesville Police Department, officials from the Florida Department of Law Enforcement said they have taken six of 10 suspects into custody for allegedly using the TJX customer data to purchase large quantities of gift cards from discount chains Wal-Mart and Sam's Club.
The series of arrests marks the first specific instance of crime to be connected to the TJX data heist, although some banks previously reported that consumer accounts affected by the incident had been used in attempted fraud around the globe.
Florida Department of Law Enforcement officials confirmed that they initially reported the crime ring to Framingham, Mass.-based TJX in November 2006. The retail chain began informing its customers about the data breach -- blamed on a computer systems intrusion -- in mid-January.
TJX media representatives didn't immediately return calls seeking comment on the arrests.
The suspects were reported by Florida law enforcement officials to have been traveling throughout the state buying large quantities of Wal-Mart gift cards with the stolen credit card accounts, and then redeeming the cards at other locations. Among the items purchased by the scammers were computers, gaming devices and big-screen TVs.
Losses experienced by Wal-Mart and the banks issuing the credit cards total more than $8 million and are still being calculated, according to Florida officials. The suspects arrested were charged with "organized scheme to defraud," a first-degree felony, and had their bonds set at $1 million each.
Arrested and booked in Metro-Dade County for the crime spree were Irving Escobar, 18; Reinier Camaraza Alvarez, 27; Julio Oscar Alberti, 33; Dianelly Hernandez, 19; Nair Zuleima Alvarez, 40; and Zenia Mercedes Llorente, 23.
The Florida Department of Law Enforcement said that it has also issued warrants for four other people believed to be involved in the scheme.
The timeline established by the Florida arrests could help to shed light on the factors that pushed TJX -- which operates several North American and European retail chains, including T.J. Maxx, Marshalls, HomeGoods and A.J. Wright -- to inform the public of its data breach.
On Jan. 17, TJX first reported that a computer systems intrusion may have compromised the personal data of an undetermined number of its customers, with hackers obtaining individuals' credit card, debit card and check information, along with data related to merchandise return transactions.
While the company has refused to reveal how many customers may be affected by the incident, TJX officials have confirmed that a majority of the data involved belonged to people who shopped at its stores in the U.S., Canada and Puerto Rico during 2003, and between May and December 2006.
- Google I/O 2013's Coolest Products and Services
- 10 Star Trek Technologies That are Almost Here
- 19 Generations of Computer Programmers
- 25 Must-Have Technologies for SMBs
- A walking tour: 33 questions to ask about your company's security
- 15 social media scams
- The 7 elements of a successful security awareness program
- IT Certification Study Tips
- Register for this Computerworld Insider Study Tip guide and gain access to hundreds of premium content articles, cheat sheets, product reviews and more.
- Inquiry Spotlight: Consumer-Facing Identity The challenges of consumer-facing identity management, access management, and authentication differ in ways subtle and dramatic from those of the employee-facing variety.
- IDC Security Infographic From the Era Before security to this current era of empowerment this infographic from Blue coat provides a timeline navigates the rise of...
- Key Drivers: Why CIOs Believe Empowered Users Set the Agenda for Enterprise Security Several years ago, a transformation in IT began to take place; a transformation from an IT-centric view of technology to a business-centric view...
- Security Empowers Business Every magazine article, presentation or blog about the topic seems to start the same way: trying to scare the living daylights out of...
- Bridging HTTP and FTP with FileXpress Internet Server What if you could take an FTP server on your internal network, and allow external users (partners or customers) to securely access it...
- MFT and FileXpress - An Overview Business users and applications exchange files on a regular basis. File transfer is a core part of the flow of business activity. All Security White Papers | Webcasts
Rising salaries boost IT optimism, though not everyone is feeling upbeat. Our survey of 4,000+ IT workers shows who's riding the wave and why. Use our interactive tool and compare your own paycheck. Read more...