Home Depot Hit By Same Malware That Hit Target

This isn’t good.

The Home Depot hack of credit card info is pretty bad given the scale. But what’s making it worse is that according to Brian Krebs, the same person who discovered the hack, it looks like the malware has been used previously:

A source close to the investigation told this author that an analysis revealed at least some of Home Depot’s store registers had been infected with a new variant of “BlackPOS” (a.k.a. “Kaptoxa”), a malware strain designed to siphon data from cards when they are swiped at infected point-of-sale systems running Microsoft Windows.

The information on the malware adds another indicator that those responsible for the as-yet unconfirmed breach at Home Depot also were involved in the December 2013 attack on Target that exposed 40 million customer debit and credit card accounts. BlackPOS also was found on point-of-sale systems at Target last year. What’s more, cards apparently stolen from Home Depot shoppers first turned up for sale on Rescator[dot]cc, the same underground cybercrime shop that sold millions of cards stolen in the Target attack.

Great. The bad news doesn’t end there:. There seems to be proof that the hacker or hackers behind this have an anti-American bent to them. That’s really troubling and this should make those at the highest levels of the US government worry.

I wonder how much worse this can get?

 

 

Leave a Reply

Discover more from The IT Nerd

Subscribe now to keep reading and get access to the full archive.

Continue reading