Skip to content
  • Computer & Technology
  • SEO
  • Technology
  • About Us
    • Contact Us
    • Advertise Here
    • Disclosure Policy
    • Sitemap
  • Computer & Technology

This code hacks nearly every credit card machine in the country

March 14, 2022
evan
0 Comments
Stolen credit card price tag: $102

Get ready for a facepalm: 90% of credit card readers currently use the same password.

The passcode, set by default on credit card machines since 1990, is easily found with a quick Google searach and has been exposed for so long there’s no sense in trying to hide it. It’s either 166816 or Z66816, depending on the machine.

Related Posts:

  • 52 best tech life hacks ever

With that, an attacker can gain complete control of a store’s credit card readers, potentially allowing them to hack into the machines and steal customers’ payment data (think the Target (TGT) and Home Depot (HD) hacks all over again). No wonder big retailers keep losing your credit card data to hackers. Security is a joke.

This latest discovery comes from researchers at Trustwave, a cybersecurity firm.

Administrative access can be used to infect machines with malware that steals credit card data, explained Trustwave executive Charles Henderson. He detailed his findings at last week’s RSA cybersecurity conference in San Francisco at a presentation called “That Point of Sale is a PoS.”

Take this CNN quiz — find out what hackers know about you

The problem stems from a game of hot potato. Device makers sell machines to special distributors. These vendors sell them to retailers. But no one thinks it’s their job to update the master code, Henderson told CNNMoney.

“No one is changing the password when they set this up for the first time; everybody thinks the security of their point-of-sale is someone else’s responsibility,” Henderson said. “We’re making it pretty easy for criminals.”

Trustwave examined the credit card terminals at more than 120 retailers nationwide. That includes major clothing and electronics stores, as well as local retail chains. No specific retailers were named.

The vast majority of machines were made by Verifone (PAY). But the same issue is present for all major terminal makers, Trustwave said.

A Verifone card reader from 1999.

A spokesman for Verifone said that a password alone isn’t enough to infect machines with malware. The company said, until now, it “has not witnessed any attacks on the security of its terminals based on default passwords.”

Just in case, though, Verifone said retailers are “strongly advised to change the default password.” And nowadays, new Verifone devices come with a password that expires.

In any case, the fault lies with retailers and their special vendors. It’s like home Wi-Fi. If you buy a home Wi-Fi router, it’s up to you to change the default passcode. Retailers should be securing their own machines. And machine resellers should be helping them do it.

Trustwave, which helps protect retailers from hackers, said that keeping credit card machines safe is low on a store’s list of priorities.

“Companies spend more money choosing the color of the point-of-sale than securing it,” Henderson said.

This problem reinforces the conclusion made in a recent Verizon cybersecurity report: that retailers get hacked because they’re lazy.

The default password thing is a serious issue. Retail computer networks get exposed to computer viruses all the time. Consider one case Henderson investigated recently. A nasty keystroke-logging spy software ended up on the computer a store uses to process credit card transactions. It turns out employees had rigged it to play a pirated version of Guitar Hero, and accidentally downloaded the malware.

“It shows you the level of access that a lot of people have to the point-of-sale environment,” he said. “Frankly, it’s not as locked down as it should be.”

Flappy Bird... on a payment terminal?

CNNMoney (San Francisco) First published April 29, 2015: 9:07 AM ET

Biggest Science And Technology Expo Blair Technology Group Ebay Store Blockchain Technology In Nigeria Brockway Career And Technology Center Communication Technology For Ell Construction Management And Technology Articles Cost Of Airline Technology Innovation Curve Of Technology Expectation D S Technology Usa Dc Cbre Technology Elevate Technology Solutions Hampton Epoch Technology Consulting Contract Famous Ted In Technology Hao Huang Illinois Insttitue Technology Happy Diwali Technology Health Information Technology Across Departments Health Information Technology Professional Networking Holo Image Technology Joint Engine Technology Definition Latest End Mill Technology Medical Technology Site:Harvard.Edu Mental Helath Technology Minnesota Technology Innovation Institute Multimedia Technology Aiwa C6 Gps North Carolina Technology Council Performance Technology Trucking Canton Ohio Peripheral Devices Technology In Action Phase Technology Phase Velocity V62 Psprs Az Chief Technology Officer Rna-Seq Technology Steps San Francisco Technology Output Scientific Technology Wireline Secretly Harmful Technology Skylake Z170 Smart Response Technology Technology Addiction Support Group Technology And Healthcare Jobs Technology At Our Fingertips Technology Based On Nature Technology Book Bindings Manuscript Technology Career Fair Los Angeles Technology Data Entry Jobs Technology Impacting Early Literacy Technology In Education Program Technology Is Hurting Education 217 Technology Leakage Problems Technology Logos Man Hair What Is It Technology Solutions What Technology Does Belgium Have What Technology In 10 Years Youth Technology Leaders Of America

« What’s the Difference Between a Bitcoin Wallet and an Exchange?
Twitter launches its website on the Tor network »
Sidebar

Recent Posts

  • Mesh Wi-Fi Systems 101: The Best Tips
  • League City DNA tool helping to solve cold cases
  • ROG Rapture GT-AX6000 Router review – Is a non-mesh router worth $799.00?
  • 6 Tech Stocks for Bargain-Hunting Investors
  • Comparison of database architectures: data warehouse, data lake and data lakehouse
Intellifluence Trusted Blogger

Archives

Categories

May 2022
M T W T F S S
 1
2345678
9101112131415
16171819202122
23242526272829
3031  
« Apr    

BL

LP

TL

Visit Now

business plan
pixliv Digitally first class

Theme by The WP Club . Proudly powered by WordPress

This website uses cookies to improve your experience. We'll assume you're ok with this, but you can opt-out if you wish. Cookie settingsACCEPT
Privacy & Cookies Policy

Privacy Overview

This website uses cookies to improve your experience while you navigate through the website. Out of these cookies, the cookies that are categorized as necessary are stored on your browser as they are essential for the working of basic functionalities of the website. We also use third-party cookies that help us analyze and understand how you use this website. These cookies will be stored in your browser only with your consent. You also have the option to opt-out of these cookies. But opting out of some of these cookies may have an effect on your browsing experience.
Necessary
Always Enabled
Necessary cookies are absolutely essential for the website to function properly. This category only includes cookies that ensures basic functionalities and security features of the website. These cookies do not store any personal information.
Non-necessary
Any cookies that may not be particularly necessary for the website to function and is used specifically to collect user personal data via analytics, ads, other embedded contents are termed as non-necessary cookies. It is mandatory to procure user consent prior to running these cookies on your website.
SAVE & ACCEPT