Tag Archive for: credit

Cybercriminals create platform for automating rogue credit card charges

Cybercriminals have a new tool to make the most of stolen credit card details before payment processors detect the fraud, security researchers warn.

A Web-based application called the Voxis Platform is being advertised on underground forums as a tool for cashing out money from stolen credit cards by automating fraudulent purchases, according to security researchers from cybercrime intelligence firm IntelCrawler.

There are three main parties involved in every online transaction: the buyer, the seller and a payment processing provider that operates a payment gateway. In order to receive money from transactions, the seller needs to have a merchant account registered with the payment gateway.

To read this article in full or to leave a comment, please click here

Network World Security

Credit card breach that hit Jimmy John’s is larger than originally thought

Signature Systems says the breach of its point-of-sales system that hit 216 Jimmy John’s sandwich shops is actually 50 percent larger than originally thought.

The company said Friday that an additional 108 restaurants that use its payment terminals were also hit. The additional locations are independent restaurants not part of the Jimmy John’s chain.

The breach is thought to have begun on June 16 when someone began gaining access to the terminals through a user name and password that are normally used to remotely manage the devices. Companies like Signature Systems use remote management so they don’t have to send a technician to each store, saving time and money but also opening the devices up to just the sort of attack that happened.

To read this article in full or to leave a comment, please click here

Network World Security

1,000,000 lost credit cards = £150,000 fine

A UK travel company has been fined £150,000 for putting an “internal only” parking database system on the internet without securing it first. The vulnerable system was used as a stepping stone for a crook to steal more than 1M e-commerce records.
Naked Security – Sophos