preview

Target Data Breach : Overview

Good Essays

Target Data Breach – The Overview
On December 18, 2013, one of the security bloggers, Brian Krebs, posted in his blog that Target, one of the biggest US retailers, had suffered a massive data breach. The next day, Target announced that data from more than 40 million credit and debit card accounts had been stolen from its systems, and noting that they started a thorough investigation. Perhaps learning from Target’s mistakes, other organizations could achieve a goal of better protecting themselves and their customers’ information.
According to KrebsOnSecurity (YYYY), -APA style 40 words or more should be in a separate paragraph indented 2” (no points deducted b/c we did not review this)
“The breach at Target Corp. that exposed credit card and personal data on more than 110 million consumers appears to have begun with a malware-laced email phishing attack sent to employees at an HVAC (heating, ventilation and air conditioning) firm that did business with the nationwide retailer […].”
The same source is pointing to Fazio Mechanical Systems, the HVAC company that is based in Sharpsburg, Pennsylvania, and services Target and other major retailers, as the point of compromise, which originated with the theft one of the Fazio employee’s login credentials to Target’s HVAC management systems. The attackers were able to escalate the compromised account’s privileges and further gain access to Target’s network, spreading laterally inside the organization. Later it was found that one of

Get Access