SC Magazine reporting another Backoff Malware breach at another retailer, this time Dairy Queen.
Backoff malware - sounds familiar? And if the tone of this blog entry sounds a little jaded, the article also includes details that compromised access credentials of a 3rd party vendor were used to gain access to DQ systems, all familiar themes for retailer breaches. Needless to say, PCI DSS requirements already mandate measures such as file integrity monitoring, password/user privilege management, access control and auditing, any of which would have provided earlier detection of the breach.