[prev in list] [next in list] [prev in thread] [next in thread]
List: isn
Subject: [ISN] Home Depot says 53 million email addresses compromised during breach
From: InfoSec News <alerts () infosecnews ! org>
Date: 2014-11-07 17:07:13
Message-ID: alpine.DEB.2.02.1411071707030.15213 () infosecnews ! org
[Download RAW message or body]
http://www.csoonline.com/article/2844289/data-breach/home-depot-says-53-million-email-addresses-compromised-during-breach.html
By Steve Ragan
CSO
Nov 6, 2014
Home Depot says that in addition to 56 million payment cards, the attackers
responsible for the breach on their POS network earlier this year also
compromised 53 million email addresses.
Thursday's breach investigation update also said the attackers leveraged a
third-party vendor's username and password in order to access the network.
Home Depot said the vendor's credentials were not enough to access the POS
network directly, so the attackers needed to elevate their access. Using a
zero-day vulnerability in Windows, they did just that, and maintained their
presence on Home Depot's network for five months.
The retailer has stated previously that they believe the malware used in the
attack was active on their POS network between April and September of 2014.
[...]
--
Evident.io - Continuous Cloud Security for AWS.
Identify and mitigate risks in 5 minutes or less.
Sign up for a free trial @ https://evident.io/
[prev in list] [next in list] [prev in thread] [next in thread]
Configure |
About |
News |
Add a list |
Sponsored by KoreLogic