Information Security News mailing list archives

As Target breach unfolds, information vanishes from Web


From: InfoSec News <alerts () infosecnews org>
Date: Thu, 23 Jan 2014 07:21:04 +0000 (UTC)

http://www.computerworld.com/s/article/9245610/As_Target_breach_unfolds_information_vanishes_from_Web

By Jeremy Kirk
IDG News Service
January 22, 2014

At least three security companies have scrubbed information related to Target from the Web, highlighting the ongoing sensitivity around one of the largest-ever data breaches.

How hackers broke into Target and installed malware on point-of-sale terminals that harvested up to 40 million payment card details is extremely sensitive. Now, details that give insight into the attack are being hastily removed or redacted, perhaps not to tip off hackers or jeopardize the investigation.

On Dec. 18, a malicious software sample was submitted to ThreatExpert.com, a Symantec-owned service. But the public report the service generated vanished.

The report was a technical description of how the Target malware functioned, including network drive maps, an IP address and a login and password for an internal company server.

[...]



--
Subscribe to InfoSec News
http://www.infosecnews.org/subscribe-to-infosec-news/


Current thread: