CIS Benchmark SYSTEM HARDENING VULNERABILITY MANAGEMENT

Confirmation via Krebs on Security that KMart have discovered card data-stealing malware on their Point of Sale hardware.

 

KMart have reported that "our systems were infected with a form of malware that was currently undetectable by anti-malware systems" which is not much of an excuse - the PCI DSS specifically mandates the use of file integrity monitoring precisely for this reason. Zero Day malware is nothing new and it should now be expected that a Zero Day variant of malware WILL be used in any targeted attack. See more on POS protection from malware and the Brian Krebs article can be read in full below

http://krebsonsecurity.com/2014/10/malware-based-credit-card-breach-at-kmart/

Share this blog post

Products
USA Offices
New Net Technologies Ltd
Naples
9128 Strada Place
Naples, Florida, 34108
Atlanta
201 17th Street, Suite 300
Atlanta, Georgia, 30363.

Tel: 1-888-898-0674
email USinfo@nntws.com
NNT Logo
UK Office
New Net Technologies Ltd
Spectrum House, Dunstable Road
Redbourn,
St Albans

Herts
AL3 7PR

Tel: 08456 585 005
Fax: 08456 122 031
email info@newnettechnologies.com
Connect with NNT
Google+ Linkedin Twitter - Change Tracker Facebook rss feed YouTube
Sign up to NNT's IT security and compliance monthly newsletter. Get breaking security news, how-to tips, trends and commentary direct to your inbox.

Sign up to the NNT newsletter