Home Depot Struck by Same Malware that Rocked Target

By

Late last year, Target was struck by a devastating malware attack that released the personal information of millions of customers including names, addresses and credit card numbers. Now, it appears the same software was used in another attack launched against Home Depot last Tuesday.

Last year's attack on Target exploited security vulnerabilities on the company's point-of-sale (POS) systems, where the retail transactions take place. A malware strain known as “BlackPOS” was able to copy and transmit customer data as the transaction was taking place, and this same software was found within Home Depot's cash registers.

RedSeal Networks, a leading provider of end-to-end network visibility and cyberattack prevention analytics claims that this attack is part of a rising trend. “The similarity of the Home Depot breach to the Target breach is a useful object lesson in how security works nowadays,” said the company's CTO Dr. Mike Lloyd. “Similar to any criminal investigation, it's worth thinking about motive, means and opportunity.”

“Motive hasn't changed much – it's easy to see why some people would steal money, when it's easy enough. Means do change – automated tools are continuously being developed, and largely automated” continued Lloyd.

 This means that when an attack works once, it's likely to work again, and automation allows attackers to sit back and have computers hunt down any other victims who are vulnerable in the same way. And as for the opportunity, the problem there is that our defenses are generally weak. The fact that the same exploit worked at both Target and Home Depot is a reminder of the IT mono-culture, and the serious perils of under-investment in defensive security automation.

By increasing variety in the way POS systems work, businesses will not have to live in fear of BlackPOS attacks. Unfortunately, the current security systems climate is rather homogenous, which increases the effectiveness of repeat attacks like this one.




Edited by Maurice Nagle
Get stories like this delivered straight to your inbox. [Free eNews Subscription]

TechZone360 Contributing Writer

SHARE THIS ARTICLE
Related Articles

Tech Podcast Award Winners Bring Excitement and Enthusiasm to a Range of Important Tech Topics

By: TMCnet Staff    6/18/2025

Tech Podcast Award winners produce engaging, informative, and often entertaining content, bringing valuable insight from industry front lines to the e…

Read More

How Mobile Technology is Driving the Shift to Casino Apps

By: Contributing Writer    6/12/2025

Recent years have seen casino apps completely changing the online casino experience. Thanks to mobile-first technology, apps are becoming the default.…

Read More

Decentralized IT Management: Fad or Future?

By: Contributing Writer    6/5/2025

Managing IT feels like an ongoing balancing act for many businesses. Centralized systems often create bottlenecks, slow down teams, and frustrate empl…

Read More

IT Management as a Driver of ESG Initiatives

By: Contributing Writer    6/5/2025

Businesses today face growing pressure to meet environmental, social, and governance (ESG) standards. Customers demand greener practices. Investors lo…

Read More

Everything You Need to Know About Mobile Casinos

By: Contributing Writer    5/30/2025

We live in the age of technology and we have come to solve things on the go, whether we are talking about personal or job-related issues. We have come…

Read More