http://krebsonsecurity.com/2013/02/pro-grade-point-of-sale-skimmer/
I wonder if this is actually how Barnes & Noble was hacked?
http://cliffsesportcorner.blogspot.com/2012/10/security-hacking-thieves-rig-barnes.html
And for whatever reasons they don't want to disclose the connection?
Comments on Brian Krebs post are well worth reading as well, I learned BT is legit for POS (Point of Sale) devices transmitting Credit Card data as long as it is encrypted.
Link (PDF) https://www.pcisecuritystandards.org/pdfs/PCI_DSS_Wireless_Guideline_with_WiFi_and_Bluetooth_082211.pdf
Really well done work, wish I could solder as well as whoever did that!
Esports & Computer Security Blog. For SC2 tournaments see clocks immediately below. Starts with Korean time at upper left, moves west around the world till you end with PDT/PST clock for Anaheim USA. I earn a small referral fee if you click the occasional Amazon links and then purchase item. It does not affect the purchase price. For more information see "Amazon Associates" link below & left of clocks.
Showing posts with label Credit Cards. Show all posts
Showing posts with label Credit Cards. Show all posts
Saturday, February 2, 2013
Wednesday, October 24, 2012
Security & Hacking: "Thieves rig Barnes & Noble PIN pads to steal credit card data"
http://nakedsecurity.sophos.com/2012/10/24/barnes-noble-pin-pad-credit-card/
Not clear yet if this attack used Skimmers or Hacking.
Note that the FBI asked Barnes and Noble to sit on this for a month, so actual attack happen a while ago, and not clear yet how long it had been active.
Days? Weeks? Months? Years?
I suspect Skimmer's of some type myself in this attack, but could have been software hack or something else.
For more on Skimmers see Krebs article "Would you have Spotted this ATM Fraud?" for even more you can see Brian Krebs entire series on Skimmers at his "All about Skimmers" were he has collected all his articles in one spot, with short intro to each article and link to full individual story.
Not clear yet if this attack used Skimmers or Hacking.
Note that the FBI asked Barnes and Noble to sit on this for a month, so actual attack happen a while ago, and not clear yet how long it had been active.
Days? Weeks? Months? Years?
I suspect Skimmer's of some type myself in this attack, but could have been software hack or something else.
For more on Skimmers see Krebs article "Would you have Spotted this ATM Fraud?" for even more you can see Brian Krebs entire series on Skimmers at his "All about Skimmers" were he has collected all his articles in one spot, with short intro to each article and link to full individual story.
Subscribe to:
Posts (Atom)