Connect with us

Hi, what are you looking for?

HEADLINES

New attack tool helps cyber criminals breach any PoS system

Trend Micro researchers have discovered MalumPoS, a new PoS attack tool that threat actors can reconfigure to breach any PoS system they wish to target. Currently, it is designed to collect data from PoS systems running on Oracle MICROS – a platform popularly used in the hospitality, food and beverage, and retail industries and is claimed by Oracle to be used in 330,000 customer sites worldwide.

As highlighted in Trend Micro’s recent Q1 report “Bad Ads and Zero-Days: Reemerging Threats Challenge Trust in Supply Chains and Best Practices”, PoS malware and tools have become one of the biggest issues and concerns in the security industry with PoS RAM scrapers continuing to increase in number.

Trend Micro Malum POS
Compared to other PoS RAM scrapers seen in the past, this particular MalumPoS threat shows a few interesting characteristics and noteworthy details.

Aside from Oracle MICROS, MalumPoS also targets Oracle Forms, Shift4 systems, and those accessed via Internet Explorer. Based on the user base of these listed platforms, a majority were from the US.

Once installed in a system, MalumPoS disguises itself as “the “NVIDIA Display Driver” or   stylized to be displayed as “NVIDIA Display Driv3r”. Although typical NVIDIA components play no important parts in PoS systems, their familiarity to regular users may make the malware seem harmless.

It selectively looks for any data on the following cards: Visa, MasterCard, American Express, Discover, and Diner’s Club.

Advertisement. Scroll to continue reading.

MalumPoS is highly configurable so a threat actor can still change or add to this current list of targeted systems and credit card targets.

Advertisement
Advertisement
Advertisement

Like Us On Facebook

You May Also Like

HEADLINES

These campaigns mix convincing visuals, well known hosting platforms like Discord, and regularly updated malware kits to evade detection by users and detection tools.

HEADLINES

Cybersecurity firm Trend Micro Philippines is raising awareness on the need for proactive security measures that will prepare defenders of AI systems, improve risk...

HEADLINES

Trend Research uncovers a sprawling global criminal infrastructure that impersonate legitimate companies, exploit trusted communications channels, and prey on job seekers using gamification techniques.

HEADLINES

“At the heart of every DECODE conference is a commitment to address the critical cybersecurity skills gap that continues to widen globally and locally....

HEADLINES

Trend’s Digital Twin capabilities will empower enterprises to simulate real-world cyber threats, validate their defenses, and adapt policies in real time across complex and...

HEADLINES

The campaigns show attackers are capitalizing on people’s increasing familiarity with completing multiple authentication steps online – a trend HP calls ‘click tolerance’. 

White Papers

Hyper-personalized attacks and agent AI subversion will require industry-wide effort to root out and address. Business leaders should remember that there’s no such thing...

HEADLINES

Trend's 2025 predictions report warns of the potential for malicious "digital twins," where breached/leaked personal information (PII) is used to train an LLM to...

Advertisement