First of all, I am a Director of IT, so security is in my job description.
I take my security at home even more serious than work.
I reload my laptops very, very often and run Vipre AV along with a hardware firewall here. I also have on one of my machines a network traffic monitor so I get an alert if traffic spikes or if one of my machines 'call home' without my knowlege. If I do anything that would be considered 'suspect' online, I always use a Virtual Machine that I wipe after. (yes, some would say I am too careful, I say just careful enough). I
buy a TON of stuff online. Have never had an issue before starting to buy e-cig stuff.
I had a card compromised, and was lucky as I pretty much monitor my email accounts constantly and caught the purchase. It was a $600+ unlocked iPhone from buy.com.
I was able to cancel the card. I have used my new card on many, many purchases since and have not had an issue.
I do believe that someone has a backdoor on someone(vendor)'s database. Not only was my CC number compromised, my security code and login information was also compromised.
Now I have alerts on all purchases (via text and email) and have a dedicated very low limit card I use for all my e-cig purchases.
Just be very, very careful.