SHARE
Facebook X Pinterest WhatsApp

Heartland Hackers Caught; Answers and Questions

Written By
thumbnail
Web Webster
Web Webster
Aug 18, 2009

“To summarize the security issues:

“The attacks on Hannaford, Heartland, 7-Eleven, and the other 2
retailers used SQL injection as the primary vector. In at least
some cases, it was not SQL injection of the transaction network,
but another system used to get to the transaction network.

“In at least some cases custom malware was installed, which
indicates either command execution via the SQL injection, or XSS
via SQL injection to attack internal workstations . We do not yet
know the details.

“The custom malware did not trigger antivirus, deleted log
files, sniffed the internal network for card numbers, scanned the
internal network for stored data, and exfiltrated the data. The
indictment doesn’t reveal the degree of automation, or if it was
more manually controlled (shell).”


Recent Breaches- We May Have All the Answers
speculates on the
platforms and attack methods.


Complete Story

thumbnail
Web Webster

Web Webster

Web Webster has more than 20 years of writing and editorial experience in the tech sector. He’s written and edited news, demand generation, user-focused, and thought leadership content for business software solutions, consumer tech, and Linux Today, he edits and writes for a portfolio of tech industry news and analysis websites including webopedia.com, and DatabaseJournal.com.

Recommended for you...

How to Install Immich on openSUSE
r00t
Sep 6, 2024
Beginners Guide for ID Command in Linux
Benny Lanco
Sep 5, 2024
[Fixed] An Unexpected Error Occurred on Gnome Extensions
Patrick
Sep 3, 2024
Run a Google Search From the Linux Command Line With Googler
TechRepublic
Aug 27, 2024
Linux Today Logo

LinuxToday is a trusted, contributor-driven news resource supporting all types of Linux users. Our thriving international community engages with us through social media and frequent content contributions aimed at solving problems ranging from personal computing to enterprise-level IT operations. LinuxToday serves as a home for a community that struggles to find comparable information elsewhere on the web.

Property of TechnologyAdvice. © 2025 TechnologyAdvice. All Rights Reserved

Advertiser Disclosure: Some of the products that appear on this site are from companies from which TechnologyAdvice receives compensation. This compensation may impact how and where products appear on this site including, for example, the order in which they appear. TechnologyAdvice does not include all companies or all types of products available in the marketplace.