Free Republic
Browse · Search
News/Activism
Topics · Post Article

Skip to comments.

Pa. vendor confirms link to Target data probe
AP ^ | Feb. 7, 2014 | AP

Posted on 02/07/2014 6:28:09 AM PST by bgill

A western Pennsylvania heating and refrigeration contractor said it was the victim of a "sophisticated cyberattack operation" that is being investigated by the Secret Service and possibly linked to the data breach that enabled hackers to access millions of credit card numbers belonging to Target store customers.

Fazio Mechanical Services Inc., of Sharpsburg, issued the statement after Internet security bloggers identified it as the third-party vendor through which hackers accessed Target's customer information. Target had previously told reporters the store believed hackers accessed 40 million of its customers' card numbers through a vendor's system.

(Excerpt) Read more at kvue.com ...


TOPICS: Business/Economy; Crime/Corruption; Government; US: Pennsylvania
KEYWORDS: creditcard; data; pennsylvania; target; targethackers
Either someone at this company hacked into Target's data or the hacker got through to Target via this vendor. Either way, expect a lot more of this in the future.
1 posted on 02/07/2014 6:28:09 AM PST by bgill
[ Post Reply | Private Reply | View Replies]

To: bgill

Physical access to Target’s server hardware.

Social engineering.


2 posted on 02/07/2014 6:32:41 AM PST by Steely Tom (If the Constitution can be a living document, I guess a corporation can be a person.)
[ Post Reply | Private Reply | To 1 | View Replies]

To: bgill

I used to work for a service vendor. We had networking hardware all over, in and amongst the customer’s network, inside their firewall — no passwords, no nothing. The clients were all the big banks in NYC. Could have snooped packets all day long from the comfort of my home. Tracing would have been impossible. At banks, the janitors are vice presidents.


3 posted on 02/07/2014 7:07:07 AM PST by Born to Conserve
[ Post Reply | Private Reply | To 1 | View Replies]

To: Born to Conserve
I used to work for a service vendor. We had networking hardware all over, in and amongst the customer’s network, inside their firewall — no passwords, no nothing. The clients were all the big banks in NYC. Could have snooped packets all day long from the comfort of my home. Tracing would have been impossible. At banks, the janitors are vice presidents.

There's an unreasonable presumption of trust for system administrators.

I have had access to millions of customer credit cards, SSNs, and addresses from time to time. My clients and these customers would never suffer harm from me, but who else has this level of access.

Sooner or later the wrong person will.

Just because it is complex and not easily understood, does not make it safe. That only works until the technology is mature and ubiquitous.

4 posted on 02/07/2014 7:19:17 AM PST by cicero2k
[ Post Reply | Private Reply | To 3 | View Replies]

Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.

Free Republic
Browse · Search
News/Activism
Topics · Post Article

FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson