Share

US warns retailers on data-stealing malware

Washington - US government cyber security watchdogs warned retailers on Thursday about malware being circulated that allows hackers to get into computer networks and steal customer data.

The Department of Homeland Security's Computer Emergency Readiness Team said retailers should step up defences against the new malware dubbed "Backoff".

The government and security experts have found evidence of hackers using this tool starting on October 2013, and continuing to the present.

A security bulletin from DHS said the cyber attacks use the same kind of remote tools that allow people to access business networks from home or on the road.

These include Microsoft's Remote Desktop, Apple Remote Desktop, Chrome Remote Desktop and others.

Anti-virus programs

"Once these applications are located, the suspects attempted to brute force the login feature of the remote desktop solution," the DHS bulletin said.

"After gaining access to what was often administrator or privileged access accounts, the suspects were then able to deploy the point-of-sale (PoS) malware and subsequently exfiltrate consumer payment data."

The posting said most anti-virus programs have been unable to identify or block the malicious software introduced by the attackers. But with the release of technical details, security firms should be able to update their programs.

The malware can allow the hackers to "scrape" data from the infected computers and in some cases use a "keylogger" to gain access to passwords.

An infection "can affect both the businesses and consumer by exposing customer data such as names, mailing addresses, credit/debit card numbers, phone numbers, and e-mail addresses to criminal elements", DHS said.

"These breaches can impact a business brand and reputation, while consumers' information can be used to make fraudulent purchases or risk compromise of bank accounts."

DHS said it has been working with the security firm Trustwave Spiderlabs "to provide relevant and actionable technical indicators for network defence".

The warning comes months after news of a massive data breach that allows hackers to potentially access millions of credit cards from retail giant Target. Other retailers including eBay have said they were also affected by breaches.

We live in a world where facts and fiction get blurred
Who we choose to trust can have a profound impact on our lives. Join thousands of devoted South Africans who look to News24 to bring them news they can trust every day. As we celebrate 25 years, become a News24 subscriber as we strive to keep you informed, inspired and empowered.
Join News24 today
heading
description
username
Show Comments ()
Rand - Dollar
19.07
+0.5%
Rand - Pound
23.60
+1.0%
Rand - Euro
20.32
+0.3%
Rand - Aus dollar
12.24
+0.5%
Rand - Yen
0.12
+0.4%
Platinum
943.20
-0.8%
Palladium
1,035.50
+0.6%
Gold
2,388.72
+0.4%
Silver
28.63
+1.4%
Brent Crude
87.11
-0.2%
Top 40
67,314
+0.2%
All Share
73,364
+0.1%
Resource 10
63,285
-0.0%
Industrial 25
98,701
+0.3%
Financial 15
15,499
+0.1%
All JSE data delayed by at least 15 minutes Iress logo
Company Snapshot
Editorial feedback and complaints

Contact the public editor with feedback for our journalists, complaints, queries or suggestions about articles on News24.

LEARN MORE
Government tenders

Find public sector tender opportunities in South Africa here.

Government tenders
This portal provides access to information on all tenders made by all public sector organisations in all spheres of government.
Browse tenders