Jump to content
Wikipedia The Free Encyclopedia

FastPOS

From Wikipedia, the free encyclopedia

FastPOS is a variant of POS malware discovered by Trend Micro researchers in June 2016.[1] The new POS malware foregrounds on how speed the credit card data is stolen and sent back to the hackers.[2] [3]

History

[edit ]

Researchers at Trend Micro have named the new malware variant as TSPY_FASTPOS.SMZTDA.[4] The malware is used by hackers to target small and mid-sized businesses (SMBs) in many countries like France, Taiwan, Japan, Brazil, Hong Kong and United States.[5]

Operation

[edit ]

Unlike other POS malware, FastPOS does not store the information locally to send it to the cyber thieves periodically.[6] The variant POS malware executes the attack on the target through infected websites or through Virtual Network Computing (VNC) or via file sharing service. The stolen data is instantly transferred to the Control and Command Server that is hardcoded by the hacker. The POS malware consists of two components– a keylogger and a RAM scraper.[7] The logged keystrokes are stored in memory and transmitted to the attacker when the Enter key is pressed and are not stored in a file of the infected system.[8] The stolen data can be user credentials, payment information which depends on the business procedures.[9] The RAM scraper is devised to steal only credit card data.[10] The memory scraper is designed to verify the service code of the credit card to help remove out cards that demands PINS.[11]

See also

[edit ]

References

[edit ]
  1. ^ "Trend Micro discovers FastPOS" . Retrieved 2016年06月01日.
  2. ^ "Quick and Easy Credit Card Theft with FastPOS" . Retrieved 2016年06月02日.
  3. ^ "FastPOS Malware Breaches and Delivers Credit Card Data Instantly". Archived from the original on 2016年08月05日. Retrieved 2016年06月24日.
  4. ^ "FastPOS malware instantly delivers stolen credit card data". 3 June 2016. Retrieved 2016年06月03日.
  5. ^ "FastPos uses Speed Exfiltration Technique" . Retrieved 2016年06月03日.
  6. ^ "FastPOS Chooses Swift, Tosses Subtle" . Retrieved 2016年06月07日.
  7. ^ "New FastPOS malware family has scatter-gun approach to data theft". Archived from the original on 2016年07月01日. Retrieved 2016年06月06日.
  8. ^ "FastPOS Malware works on Data Exfiltration Speed". 5 June 2016. Retrieved 2016年06月05日.
  9. ^ "Monthly Cyber Threat Briefing" (PDF). Archived from the original (PDF) on 2016年08月10日. Retrieved 2016年06月01日.
  10. ^ Zetter, Kim. "How Ram Scrapers Work: The Sneaky Tools Behind the Latest Credit Card Hacks". Wired. Retrieved 2019年08月30日.
  11. ^ "FastPOS'speedy delivery of stolen credit card data". 6 June 2016. Retrieved 2016年06月06日.
Hacking in the 2010s
Major incidents
2010
2011
2012
2013
2014
2015
2016
2017
2018
2019
Hacktivism
Groups
Individuals
Major vulnerabilities
publicly disclosed
Malware
2010
2011
2012
2013
2014
2015
2016
2017
2018
2019

AltStyle によって変換されたページ (->オリジナル) /