Botnet takes advantage of weak passwords to hack POS systems

Security firm FireEye says it has discovered a botnet that is sniffing out point-of-sale systems and using brute force techniques to hack them and steal card data.

Be the first to comment

Botnet takes advantage of weak passwords to hack POS systems

Editorial

This content has been selected, created and edited by the Finextra editorial team based upon its relevance and interest to our community.

The BrutPOS botnet, comprising more than 5000 machines, scans specified IP address ranges for remote desktop protocol (RDP) servers that have weak or default passwords in an effort to locate vulnerable POS systems.

In a blog post, FireEye says that it found five command and control servers used by the botnet, two of which were still active and gave the firm some insight into the scam.

During a two week period, crooks managed to access 60 POS systems, working their way in by taking advantage of poor usernames such as 'administrator' and passwords like 'pos' and Password1'.

Warns FireEye: "While new malware and more advanced attacks are taking place, standard attacks against weak passwords for remote administration tools presents a significant threat."

Sponsored [On-Demand Webinar] Real Time Goes Global: Expanding Revenue Potential Beyond Borders

Related Company

Keywords

Comments: (0)

[New Whitepaper] APIs, Automation, and AI: An Arsenal to Defend Against Card Transaction FraudFinextra Promoted[New Whitepaper] APIs, Automation, and AI: An Arsenal to Defend Against Card Transaction Fraud