Hackers open new front in payment card data thefts
- 1
- 2
- 3
- < previous
The data thefts can be hard to detect because often the stolen information is spirited out of a company via open network ports -- such as Port 80, which is used for online connections and serving up Web pages, or Port 443, which can be used to send secure communications over the Web.
Schwartz said that many companies don't even monitor those ports, assuming instead that all of the data traffic going out through them is legitimate.
Network managers should be watching the ports "for nonstandard traffic," he added. "If traffic is destined for Romania, and it's [using] Port 443, and it's not SSL traffic, that's a red flag -- and you should see it in minutes, not months."
Based on what's known about the Hannaford and Okemo breaches, it isn't clear whether they really do point to a new method of attack, said Deven Bhatt, director of corporate security at Airline Reporting. But he added that ARC, which provides ticket distribution and financial settlement services to more than 150 airlines and rail carriers, is reviewing its networks to make sure they aren't vulnerable to data-in-transit thefts.
ARC's review was prompted by Okemo's disclosure that its systems had been breached in a Hannaford-like fashion and by the reports that other companies may have been similarly attacked. Bhatt noted that ARC is fully compliant with the PCI requirements.
But Hannaford has made the same claim and yet was the victim of a data breach.
Chris Andrew, vice president of security technology at software vendor Lumension Security, said the grocer's network obviously wasn't locked down tight, as evidenced by the fact that the malware was able to send the stolen data overseas.
"Clearly," he added, "there was a pathway back out of the network that Hannaford should have closed."
- 1
- 2
- 3
- < previous
Click here for case studies, whitepapers and other useful vendor content When an IT disaster occurs, how handy it would be to push a button and start again as if nothing had happened.
Discover and learn more about CA XOSoft today.
PGP and Ponemon Institute Unveil Inaugural Australian Data Breach Study 2008 20 November, 2008 17:34:00
Symantec Cloud Services Transform Data Centre Operations Through Proactive Management 20 November, 2008 12:06:00
Verizon Business Offers Tips to Building a Successful Unified Communications and Collaboration Plan 20 November, 2008 12:04:00
NetApp Named 2008 Citrix Ready Solution of the Year by Citrix Systems 20 November, 2008 11:33:00
Extreme Networks Ethernet Transport lowers total cost of ownership for carrier metro networks 20 November, 2008 10:21:00
NAB works with Avanade® to leverage Microsoft® Windows Server® 2008 for its branch offices
In 2007, Avanade helped the National Australia Bank use Windows Server 2008 to simplify deployment, maximise the efficiency of their low-bandwidth wide area network and consolidate its IT infrastructure.











