TCF Financial Corp. is issuing new debit cards to customers whose information was stolen in the Target data breach as fallout from the giant holiday cyberheist continues.
TCF is the largest Minnesota bank to take the replace-them-all approach, joining banks such as JPMorgan Chase & Co., which quickly said it would replace 2 million cards after the breach became public in mid-December. Several Minnesota credit unions have taken the same approach.
Wayzata-based TCF, known for its huge stash of checking accounts relative to its size, is in the process of sending letters and e-mails informing customers of the change, and telling them when they can expect to receive a new card, a bank spokesman said. The bank won't say how many cards it's reissuing, but said most are debit cards.
TCF emphasized that it won't deactivate existing cards until after customers receive a new one and activate it. "Once the new card is activated, their old card is immediately voided," spokesman Mark Goldman said.
Customers don't have to change their personal information number (PIN) if they don't want to, said TCF Vice Chairman Tom Jasper, adding that the decision to reissue cards was in the "mutual best interest" of the bank and customers.
"We're willing to incur the full cost of replacing cards because it gives our customers greater confidence that their financial information is secure, and they won't be victims of fraud related to the Target breach," Jasper said.
The 19-day breach, linked to malware on point-of-sale terminals in Target's U.S. stores, gave thieves access to the credit and debit card information of 40 million people who bought merchandise in stores between Nov. 27 and Dec. 15. The cybertheft remains under investigation by Target, a forensics firm the retailer is working with, the U.S. Department of Justice and the Secret Service.
The intrusion quickly became a nightmare not just for Minneapolis-based Target Corp., but for banks, credit unions and other financial institutions.