Our server costs ~$56 per month to run. Please consider donating or becoming a Patron to help keep the site running. Help us gain new members by following us on Twitter and liking our page on Facebook!
Current time: April 28, 2024, 4:43 pm

Thread Rating:
  • 0 Vote(s) - 0 Average
  • 1
  • 2
  • 3
  • 4
  • 5
Ask a computer security expert.
#21
Ask a computer security expert.
(May 24, 2015 at 1:45 am)Minimalist Wrote: That makes sense but it isn't very reassuring.  We have had several hacks over here of high value targets..... like Target.

The Target hack was actually a very interesting case of how even security measures can fail if they aren't set up correctly or properly protected.

If I recall correctly, the hackers found a web server connected to the Internet, exploited it, and gained access to the internal network. On this network was a distribution server which would push software updates to all Target store POS (point of sale) systems. This is a pretty nice setup; it means the POS systems can all be updated with the latest software, security updates, etc.

Of course, if the distribution server is compromised, that setup becomes dangerous. As it happens, the distribution server was compromised, and the hackers used it to push a malicious update to every POS system. The update would cause the POS systems to store credit card details and send them back to the hackers.
Reply



Messages In This Thread
Ask a computer security expert. - by Tiberius - May 22, 2015 at 1:12 am
RE: Ask a computer security expert. - by Minimalist - May 22, 2015 at 1:44 am
RE: Ask a computer security expert. - by Alex K - May 22, 2015 at 3:03 am
RE: Ask a computer security expert. - by pocaracas - May 22, 2015 at 5:38 am
RE: Ask a computer security expert. - by ignoramus - May 22, 2015 at 7:23 am
RE: Ask a computer security expert. - by Napoléon - May 22, 2015 at 7:50 am
RE: Ask a computer security expert. - by pocaracas - May 22, 2015 at 9:22 am
RE: Ask a computer security expert. - by Napoléon - May 22, 2015 at 8:32 pm
RE: Ask a computer security expert. - by pocaracas - May 23, 2015 at 5:51 am
RE: Ask a computer security expert. - by Chad32 - May 22, 2015 at 8:16 am
RE: Ask a computer security expert. - by vorlon13 - May 22, 2015 at 9:55 am
RE: Ask a computer security expert. - by Whateverist - May 22, 2015 at 10:00 am
RE: Ask a computer security expert. - by pocaracas - May 22, 2015 at 10:13 am
RE: Ask a computer security expert. - by Whateverist - May 22, 2015 at 10:15 am
RE: Ask a computer security expert. - by ignoramus - May 23, 2015 at 6:06 am
RE: Ask a computer security expert. - by ignoramus - May 23, 2015 at 11:37 pm
RE: Ask a computer security expert. - by vorlon13 - May 23, 2015 at 11:06 am
RE: Ask a computer security expert. - by Tiberius - May 24, 2015 at 1:20 am
RE: Ask a computer security expert. - by Minimalist - May 24, 2015 at 1:45 am
Ask a computer security expert. - by Tiberius - May 25, 2015 at 9:07 am
RE: Ask a computer security expert. - by KevinM1 - May 27, 2015 at 4:15 pm
RE: Ask a computer security expert. - by Minimalist - May 27, 2015 at 5:11 pm
RE: Ask a computer security expert. - by Tiberius - May 28, 2015 at 12:10 am
RE: Ask a computer security expert. - by KevinM1 - May 30, 2015 at 6:07 pm
RE: Ask a computer security expert. - by pocaracas - May 30, 2015 at 7:07 pm

Possibly Related Threads...
Thread Author Replies Views Last Post
  Ask a computer security expert (part 2) Tiberius 31 10448 July 18, 2017 at 3:28 pm
Last Post: Edwardo Piet
  Ask a psychiatric/hospital security guard... Bob Kelso 34 6548 September 20, 2015 at 9:27 pm
Last Post: Bob Kelso



Users browsing this thread: 1 Guest(s)