Cisco uncovers new credit card-stealing malware

Malware strikes
Malware strikes

Cisco has discovered a new malware threat against Point-of-Sale (PoS) terminals that has the potential to pilfer credit card details. The threat appears to be a lot more damaging than the malware that infected Target.

The new malware family, which Cisco's Security Solutions team has nicknamed PoSeidon, scrapes the memory on PoS systems to try and grab credit card data that it then sends to its servers (primarily using Russian .ru domains) before they are harvested and eventually sold on.

Adhere to best practices

US retailer Target was subjected to a huge data breach in December 2013, resulting in approximately 40 million credit and debit card accounts compromised. Additionally, personal data such as names, addresses, and emails were stolen from a further 70 million.

That was also carried out using malware program that had its origins in Russia known as BlackPOS. In the face of the PoSeidon malware, Cisco is advising system administrators to adhere to industry best practices to stand up against this new PoS malware.