The Target Hack

182363165_resized

For Minneapolis-based retail giant Target, Black Friday turned into a black eye. Beginning around November 27, the day before Thanksgiving, 2013, and continuing for nearly three weeks of the Christmas shopping season, the discount retailer suffered a huge security breach. Data was stolen from an estimated 40 million credit and debit cards that were used at Target locations nationwide. In addition, the partial personal information (names, addresses, email addresses, phone numbers) of 70 million more people was also hacked.

Although investigations are still under way—the Justice, Homeland Security, and Treasury Departments, among other government agencies, are involved, as well as private cybersecurity firms—it is not yet known who was behind the cyberattack. Evidence points toward an organized crime network based in Russia. The perpetrators apparently gained access to Target’s computer system by stealing credentials from a vendor. They were then able to install malware into the point-of-sale (POS) terminals where customers swipe their cards. The data contained on the cards’ magnetic strips was somehow pirated as people made their purchases.

The company and card-issuing banks rushed to reassure customers that they would do all they could to prevent fraudulent use of their cards, but it may be too soon to know how the criminals plan to use the stolen data. A small number of other retailers, including Neiman Marcus, also were affected. The security breach is fueling calls for legislation to better protect consumer information. One thing is clear: the United States is behind the times when it comes to card-security technology. In the near future there will be a changeover of all credit cards and POS terminals to a more secure payment system known as EMV, which uses an embedded computer chip in the card plus a PIN (personal identification number). The EMV system is already widely used in Europe and elsewhere. Though somewhat expensive to implement, this improvement promises significant protection against fraud. The major credit card issuers, Visa and MasterCard, say the chip-and-PIN technology should be in place by October 2015.

Image credit: © Talaj/Getty Image

Related Links

8 Comments

  1. Franz says:

    Interesting.

  2. Franz says:

    I wonder how much money that hacker made off of all that.

  3. LAURYN ENGLISH says:

    I thought that whoever did that was wrong and should be put in jail and I feel bad for Target.

  4. LAURYN ENGLISH says:

    I thought that whoever did that was wrong and should be put in jail.

  5. marie says:

    stuiped people

    • Osvaldo says:

      c2a4hello there and thank you for your info – I’ve certainly piekcd up anything new from right here. I did however expertise some technical points using this website, as I experienced to reload the site lots of times previous to I could get it to load properly. I had been wondering if your web hosting is OK? Not that I am complaining, but slow loading instances times will sometimes affect your placement in google and could damage your quality score if ads and marketing with Adwords. Anyway I am adding this RSS to my e-mail and can look out for a lot more of your respective intriguing content. Make sure you update this again very soon..b9