Categories: SecurityWorkspace

Staples ‘Investigating’ Possible Payment Card Data Breach

Staples has confirmed it has brought in law enforcement authorities to help investigate a possible security breach of its payment card systems, making it the latest major US retailer to be hit by such an attack.

“Staples is in the process of investigating a potential issue involving credit card data and has contacted law enforcement,” said Staples senior public relations manager Mark Cautela. “We take the protection of customer information very seriously, and are working to resolve the situation.”

Pattern of fraud

Cautela added that Staples customers are not responsible for fraudulent activity on their credit cards that is reported in a timely manner. Staples didn’t offer further details on the matter.

Security blogger Brian Krebs first reported the incident on Monday, citing banking sources on the East Coast.

“It appears likely that fraudsters have succeeded in stealing customer card data from some subset of Staples locations, including seven Staples stores in Pennsylvania, at least three in New York City, and another in New Jersey,” he said in a blog post.

The apparent incident follows a cyberattack on retailer Sears earlier this month affecting customers of the company’s Kmart stores. Other recent incidents have affected Dairy Queen, Home Depot, Michaels and Nieman Marcus.

While details of the Staples case are as yet unknown, several recent incidents have involved the infection of point-of-sale terminals by malware, according to Mark Bower, vice president of product management at Voltage Security.

“The only realistic way merchants can foil malware from stealing the mag stripe data is to avoid live card data arriving into the POS,” he stated. Bower said improved encryption could help eliminate such attacks.

Are you a security pro? Try our quiz!

Matthew Broersma

Matt Broersma is a long standing tech freelance, who has worked for Ziff-Davis, ZDnet and other leading publications

Recent Posts

Russia Accused Of Cyberattack On Germany’s Ruling Party, Defence Firms

German foreign minister warns Russia will face consequences for “absolutely intolerable” cyberattack on ruling party,…

19 hours ago

Alphabet Axes Hundreds Of Staff From ‘Core’ Organisation

Google is reportedly laying off at least 200 staff from its “Core” organisation, including key…

19 hours ago

Apple Announces Record Share Buyback, Amid iPhone Sales Decline

Investor appeasement? Apple unveils huge $110 billion share buyback program, as sales of iPhone decline…

23 hours ago

Tesla Backs Away From Gigacasting Manufacturing – Report

Tesla retreats from pioneering gigacasting manufacturing process, amid cost cutting and challenges at EV giant

2 days ago

US Urges No AI Control Of Nuclear Weapons

No skynet please. After the US, UK and France pledge human only control of nuclear…

2 days ago