Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Ingenico Buys POS Software Company Phos

    March 31, 2023

    eRetail Cybertech’s cloud-based POS billing software Prana POS is now available on Microsoft Azure Marketplace

    March 30, 2023

    Mobile POS Market is Booming Worldwide | Square, Ingenico, iZettle

    March 29, 2023
    Facebook Twitter Instagram
    Your POS TechYour POS Tech
    • Point Of Sale [POS]
    Your POS TechYour POS Tech
    Home»Point Of Sale [POH]»This PoS malware blocks contactless payments to steal credit card data
    Point Of Sale [POH]

    This PoS malware blocks contactless payments to steal credit card data

    yourpostechBy yourpostechFebruary 2, 2023Updated:February 2, 2023No Comments2 Mins Read
    Facebook Twitter Pinterest LinkedIn Tumblr WhatsApp VKontakte Email
    Share
    Facebook Twitter LinkedIn Pinterest Email

    Cybersecurity researchers have spotted new versions of a known Point of Sale (PoS) malware(opens in new tab) that blocks advanced features to be able to steal credit card data. The team from Kaspersky observed the Prilex PoS malware versions 06.03.8070, 06.03.8072, and 06.03.8080, in the wild. These versions were released in November 2022, and prevent the terminal from accepting contactless credit card transactions. 

    Contactless transactions, made possible due to near-field communication (NFC) chips found in both PoS terminals on one end, and credit/debit cards, smartphones, and smartwatches on the other exploded in popularity during the Covid-19 pandemic. The technology allows consumers to purchase goods and services without actually inserting their credit cards, making it almost impossible for hackers to steal the data via PoS malware.

    If a user tries to initiate such a transaction on a compromised endpoint, it will only get an error message, forcing them to swipe their cards and, ultimately, share sensitive data with the attackers.  After stealing the data, the researchers say, the attackers can run cryptogram manipulation and “GHOST transaction” attacks.

    Prilex operators have been busy, the researchers say. They’ve been adding new features for months now, and before these, they added EMV cryptogram generation which allows them to evade getting detected and initiate “GHOST transaction” attacks even on cards protected with CHIP and PIN. They also added a way to filter cards and grab data only from specific providers.

    “These [filtering] rules can block NFC and capture card data only if the card is a Black/Infinite, Corporate or another tier with a high transaction limit, which is much more attractive than standard credit cards with a low balance/limit,” Kaspersky said.

    Share. Facebook Twitter Pinterest LinkedIn Tumblr WhatsApp Email
    Previous ArticlePoS malware can block contactless payments to steal credit cards
    Next Article Prilex POS malware evolves to block contactless transactions
    yourpostech
    • Website

    Related Posts

    Ingenico Buys POS Software Company Phos

    March 31, 2023

    eRetail Cybertech’s cloud-based POS billing software Prana POS is now available on Microsoft Azure Marketplace

    March 30, 2023

    Mobile POS Market is Booming Worldwide | Square, Ingenico, iZettle

    March 29, 2023

    2 POs booked on court orders

    March 28, 2023

    Leave A Reply Cancel Reply

    Our Picks

    Subscribe to Updates

    Get the latest creative news from SmartMag about art & design.

    About Us
    About Us

    We provide a wide range of customized, integrated B2B and B2C digital marketing services solutions that are ideal for your business.

    We're accepting new partnerships right now.

    Email Us: info@yourmartech.com
    Contact: +1-530-518-1420

    Our Brands
    • Your Martech
    • Your HR Tech
    • Your Fin Tech
    • Your Revenue
    • Your Bio Tech
    • Your Info Tech
    • Your Health Tech
    SUBSCRIBE NOW
    Loading
    LinkedIn
    • Privacy Policy
    © 2022 Vigarbiz Inc. Designed by Vigarbiz Media.

    Type above and press Enter to search. Press Esc to cancel.

    Your Postech