Categories: CyberCrimeSecurity

Credit Card And Biometric Data Compromised In Avanti Hack

Self-service payment kiosk vendor Avanti Markets has suffered a security breach where hackers managed to gain access to some of its internal networks.

The US-based firm is known for manufacturing break room devices for businesses which allow employees to serve themselves and pay for food and drinks with either cash, a credit card or fingerprint scan.

Hackers were reportedly able to send malicious code out to these payment devices, which could leave customer payment card details and their biometric data at risk.

Security breach

In a statement on its website, Avanti said: “On July 4, 2017, we discovered a sophisticated malware attack which affected kiosks at some Avanti Markets. Based on our investigation thus far, and although we have not yet confirmed the root cause of the intrusion, it appears the attackers utilized the malware to gain unauthorized access to customer personal information from some kiosks.

“Because not all of our kiosks are configured or used the same way, personal information on some kiosks may have been adversely affected, while other kiosks may not have been affected.”

According to the company, the hackers used a strain of malware that was designed to collect card information, include the cardholder’s full name, the card number and the expiration date.

Customers who used the Market Card option may also have had their names and email addresses compromised, as well as of course biometric information due to the latest Avanti systems allowing customers to pay with their fingerprint.

“We apologize for any inconvenience this may cause you and assure you we are working diligently to resolve this incident and to ensure that it will not happen again,” the statement added.

Point-of-Sale (PoS) devices have long been targeted by hackers, with restaurant chain Chipotle being one of the most recent organisations to fall victim to such a cyber attack.

Getting hold of payment card details is still a lucrative reward for cyber criminals and organisations need to remain vigilant as such targets will always remain firmly in hacker’s sights.

Quiz: Are you a security pro?

Sam Pudwell

Sam Pudwell joined Silicon UK as a reporter in December 2016. As well as being the resident Cloud aficionado, he covers areas such as cyber security, government IT and sports technology, with the aim of going to as many events as possible.

Recent Posts

Russia Accused Of Cyberattack On Germany’s Ruling Party, Defence Firms

German foreign minister warns Russia will face consequences for “absolutely intolerable” cyberattack on ruling party,…

2 days ago

Alphabet Axes Hundreds Of Staff From ‘Core’ Organisation

Google is reportedly laying off at least 200 staff from its “Core” organisation, including key…

2 days ago

Apple Announces Record Share Buyback, Amid iPhone Sales Decline

Investor appeasement? Apple unveils huge $110 billion share buyback program, as sales of iPhone decline…

2 days ago

Tesla Backs Away From Gigacasting Manufacturing – Report

Tesla retreats from pioneering gigacasting manufacturing process, amid cost cutting and challenges at EV giant

2 days ago

US Urges No AI Control Of Nuclear Weapons

No skynet please. After the US, UK and France pledge human only control of nuclear…

3 days ago