PCI DSS Training Resources

The UISO is committed to supporting the efforts of the Office of the Treasurer in the pursuit for and maintenance of PCI compliance.

2010 PCI DSS Workshop

Ruth Harpool (Office of the Treasurer) and Chad Marcum (UISO) co-presented a workshop about PCI DSS in the fall of 2010. It is broken apart into three sessions:

Workshop files

Supplemental resources:

Note: Sessions were recorded using Adobe Connect (formerly Breeze).

Other PCI DSS Resources

Security & Policy Blog Posts

  • Tens of thousands of Twitter accounts have been compromised in a recent hack attack in which more than 55,000 passwords were leaked and posted to Pastebin by anonymous hackers. You should probably change your Twitter password today.
  • A mistake by Apple can cause Mac OS X 10.7.3 (Lion) to store your login password on the hard drive in clear text.
  • Adobe Flash Player Security Update
  • A memo has been sent to the President's Cabinet to help raise awareness of the Information Security and Privacy Program.

    Recent Security Bulletins

  • A remote code execution vulnerability exists such that an attacker who successfully exploited this vulnerability could run abitrary code on the target system, then install programs; view, change, or delete data; or create new accounts with full rights.
  • "Flashback" is Mac-specific malware that is currently spreading via a recently patched Java vulnerability
  • A remote code execution vulnerability exists such that an attacker who successfully exploited this vulnerability could run abitrary code on the target system, then install programs; view, change, or delete data; or create new accounts with full rights.
  • Warning about phone calls requesting information or requesting users to take action to compromise computers.