Russian Mafia Suspected in Oracle Point-of-Sale Breach

Russian Mafia Suspected in Oracle Point-of-Sale Breach

August 9, 2016         Written By John H. Oldshue

The support portal for Oracle’s MICROS point-of-sale (POS) credit card system, which is used at more than 330,000 cash registers in 180 countries, has been breached.

The company has confirmed it has “detected and addressed malicious code in certain legacy MICROS systems,” and is asking MICROS customers to reset their online support portal passwords.

While a source close to the investigation told KrebsOnSecurity that the company initially thought the breach was limited to a small number of computers and servers, they now believe more than 700 systems may have been impacted.

The hackers initially breached a single system inside the Oracle network and then spread from there. The “ticketing portal,” which allows MICROS users to remotely troubleshoot POS systems problems, was one of these breached systems. The hackers placed malware on this portal, which allowed them to steal usernames and passwords when customers logged in for support. While credit card information is not currently at-risk, the hackers could use this stolen login information to hack credit card systems and then grab payment information.

Oracle wants to assure customers that “payment card data is encrypted both at rest and in transit in the MICROS hosted customer environments,” and the breach did not affect its other corporate networks, cloud services or systems.

Security experts working on the case said they saw the customer support portal communicating with a server known to be used by the Carbanak gang, which is a part of the Russian mafia. They are suspected of stealing more than $1 billion from banks and retailers over the past few years.



The information contained within this article was accurate as of August 9, 2016. For up-to-date
information on any of the terms, cards or offers mentioned above, visit the issuer's website.


john-oldshue

About John H. Oldshue

John Oldshue is the creator of LowCards.com. He worked for over 15 years in television and won an Emmy award for his reporting. He covers credit card rate issues for LowCards.com.
View all posts by John H. Oldshue
Featured Low Interest Card
Top Features : 1.25X miles on every purchase; no annual fee; bonus of 20,000 miles once $1,000 is spent in first 3 months
Featured Cash Back Card
Top Features : 1.5% cash back on all purchases; $150 bonus after spending $500 in first 3 months
Featured No Annual Fee Card
Top Features : 2% cash back on purchases: 1% when you buy plus 1% as you pay; 0% APR for 18 months on balance transfers
Featured Bad Credit Card
Top Features : Perfect credit not required; Reports to major credit bureaus
Featured Fair Credit Card
Top Features : No annual fee; access to higher credit line after making first 5 monthly payments on time
Featured Limited/No Credit
Top Features : No annual fee; reports to major credit bureaus; access to higher credit line after making first 5 monthly payments on time