Report: Retail systems still vulnerable
In a paper released today (click for PDF), Neal Krawetz of Hacker Factor Solutions looks at the probable causes behind recent large-scale data thefts at TJX, OfficeMax and other retail stores. He concludes that "point-of-sale terminals and branch servers store credit card information in ways that are no longer secure enough."
Although Krawetz's paper doesn't reveal any new exploits against point-of-sale (POS) systems, he does fault practices still being used by various vendors. In an e-mail to CNET News.com, Krawetz wrote: "I believe that the vulnerabilities behind the January 2006 compromise of a Fujitsu … Read more