Malware Targets Credit Card Data on Checkout PCs
Security firm McAfee says it has discovered a new type of malware designed to steal credit card data from point-of-sale (POS) computer systems. The malware is of the Trojan horse variety and is being called 'vSkimmer'.
Point-of-sale systems, or checkout systems, are the computers used in retail environments.
Malware Communicates Credit Card Data to Hackers
McAfee security researcher Chintan Shah reported on the vSkimmer threat in a recent blog post. According to Shah, the malware was discovered in mid-February 2013 and is currently being discussed on cybercriminal forums. (Source: pcworld.com)
Here's how the malware works: once installed on a checkout computer, vSkimmer collects data about the operating system, including its current version, default language, host name, and active user name.
The malware then sends this information back to a central command and control server where it can be used by hackers to keep tabs on infected POS systems.
Once the hackers send a download and execute command, the malware begins scanning for any information that resembles 'Track 2' data. Track 2 data is the information found stored on the black magnetic strip seen on physical credit cards.
By acquiring this Track 2 data, hackers could potentially clone a credit card and use it to make fraudulent purchases.
Chip-Enabled Cards Safe -- For Now
For now, EMV-enabled cards (meaning they use a chip and pin number) can't be cloned in this way. However, security experts note that hackers are working on adding support for EMV, meaning 2013 could be the year that this security measure is effectively bypassed.
Shah also noted that vSkimmer can be used in an offline mode. Simply connecting a USB device with the volume name KARTOXA007 will copy a log file containing Track 2 data.
vSkimmer is just one of many point-of-sale malware threats that have emerged in recent weeks. Another, dubbed 'BlackPOS', has reportedly been used to compromise accounts linked to major American banks, including Chase, Capital One, and Citibank.
Preliminary investigations by security experts have revealed that the BlackPOS creator is based in Russia. It remains unclear where vSkimmer originated. (Source: networkworld.com)
Most popular articles
- Which Processor is Better: Intel or AMD? - Explained
- How to Prevent Ransomware in 2018 - 10 Steps
- 5 Best Anti Ransomware Software Free
- How to Fix: Computer / Network Infected with Ransomware (10 Steps)
- How to Fix: Your Computer is Infected, Call This Number (Scam)
- Scammed by Informatico Experts? Here's What to Do
- Scammed by Smart PC Experts? Here's What to Do
- Scammed by Right PC Experts? Here's What to Do
- Scammed by PC / Web Network Experts? Here's What to Do
- How to Fix: Windows Update Won't Update
- Explained: Do I need a VPN? Are VPNs Safe for Online Banking?
- Explained: VPN vs Proxy; What's the Difference?
- Explained: Difference Between VPN Server and VPN (Service)
- Forgot Password? How to: Reset Any Password: Windows Vista, 7, 8, 10
- How to: Use a Firewall to Block Full Screen Ads on Android
- Explained: Absolute Best way to Limit Data on Android
- Explained: Difference Between Dark Web, Deep Net, Darknet and More
- Explained: If I Reset Windows 10 will it Remove Malware?
My name is Dennis Faas and I am a senior systems administrator and IT technical analyst specializing in cyber crimes (sextortion / blackmail / tech support scams) with over 30 years experience; I also run this website! If you need technical assistance , I can help. Click here to email me now; optionally, you can review my resume here. You can also read how I can fix your computer over the Internet (also includes user reviews).
We are BBB Accredited
We are BBB accredited (A+ rating), celebrating 21 years of excellence! Click to view our rating on the BBB.