Home Depot Security Breach Attack
On September 8 Home Depot confirmed that it had joined the growing ranks of American companies targeted by a cyber-attack - and that the customer data.
Home depot security breach attack. New allegations have emerged about information security practices at Home Depot in the wake of the retailer confirming that it suffered a data breach. Home Depot Breach Details. If you want in-depth always up-to-date reports on The Home Depot and millions of other companies consider booking a demo with us.
It has been claimed that up the information of up to 60 million cards may have been stolen. Criminals used unique custom-built malware to steal account numbers from Home Depots point-of-sale systems. UpGuard is the new standard in third-party risk management and attack surface management.
Said 56 million cards may have been compromised in a five-month attack on its payment terminals making the breach much bigger than the holiday attack at Target Corp. Even after the lessons learned from the Target data breach Home Depots Point of Sale systems were compromised by similar exploitation methods. The Home Depot breach is just the latest in a string of cyber attacks against major retailers this year.
And Canada affected 56 million debit and credit cards far more than a pre-Christmas 2013 attack. The use of stolen third-party vendor credentials and RAM scraping. Speculation suggests that the Home Depot attack was carried out using BlackPOS malware.
According to an in-depth case study the hackers were able to steal a third-party vendors credentials and used this as a way to enter the system. The hackers were then able to use the zero-day vulnerability in Windows to pivot directly into the Home Depot corporate network. A BlackPOS variant discussed by Trend Micro.
The do-it-yourself retailer has 180 stores in Canada and more than 2200 in the US. In 2015 Target agreed to pay 10 million in a settlement over a data breach it suffered in 2013 that affected 40 million cards. KrebsOnSecurity claims that an investigation into the alleged Home Depot security breach identified a variant of Black POS the same malware that affected Target point-of-sale systems.