Landry's
December 31, 2019
•[ financial, malware, retail ]
Restaurant chain Landry's discloses a security incident that involved the discovery of malware on the network of 63 restaurants. The malware was designed to collect payment card data from cards swiped at its bars and restaurants, and was active from March 13 to October 2019.
Islands restaurants
December 19, 2019
•[ financial, malware, retail ]
Islands restaurants announces a PoS malware incident.
Champagne French Bakery Cafe
December 19, 2019
•[ financial, malware, retail ]
Even Champagne French Bakery Cafe announces a credit card breach due to a PoS malware.
Wawa
December 19, 2019
•[ financial, malware, retail ]
Convenience store chain Wawa discloses today a card breach after its security team finds malware installed on its payment processing systems. The malware was installed on March 4 this year, and impacts potentially all locations.
Unnamed gas station in North America
December 14, 2019
•[ hack, malware, retail ]
Payments processor VISA says North American merchants who operate gas stations and gas pumps are facing a rash of attacks from cybercrime groups wanting to deploy point-of-sale (POS) malware on their networks. VISA has identified two specific attacks which were attributed to FIN8.
Love Bonito
December 13, 2019
•[ hack, malware, retail ]
Love Bonito reports a data breach, with personal and credit card information potentially accessed. The company discovered a malicious code being added to their e-commerce site on 10 Dec.
GoSport et Courir
December 12, 2019
•[ ransomware, malware, retail ]
GoSport et Courir is hit by a ransomware attack. 2 out of 84 shops are closed as a consequence of the attack.
Sweaty Betty
December 3, 2019
•[ financial, malware, retail ]
The web site for UK retailer Sweaty Betty is the victim of a Magecart attack, and hacked to insert malicious code that attempts to steal a customer's payment information when making purchases.
DiBella's Old Fashioned Submarine
November 26, 2019
•[ financial, malware, retail ]
DiBella's Old Fashioned Submarines reveals that its stores in Connecticut, Indiana, Michigan, Ohio, New York and Pennsylvania may have had the information on as many as 305,000 payment cards compromised between March 22, 2018 and December 28, 2018.
On the Border
November 26, 2019
•[ financial, malware, retail ]
On the Border, a border-style Mexican food chain notifies a data breach in a payment-processing system serving restaurants in 28 states. Some customer credit card information could have been compromised on visits between April 10 and August 10, 2019.
Catch Hospitality Group
November 23, 2019
•[ financial, malware, retail ]
Catch Hospitality Group discloses that PoS systems at Catch NYC, Catch Rooftop, and Catch Steak were infected with malware that allowed attackers to steal credit card information from customers.
Church's Chicken
November 22, 2019
•[ financial, retail ]
Church's Chicken investigates a possible data breach involving credit and debit card information at some of its company owned locations in the U.S.
Macy's
November 14, 2019
•[ financial, malware, retail ]
Macy's announces a data breach caused by Magecart card-skimming code being implanted in the firm's online payment portal. The incident was discovered on October 15, and was active since October 7.
Boardriders
November 6, 2019
•[ ransomware, malware, retail ]
Action sports giant Boardriders is hit by a ransomware attack that affected some of its subsidiaries, including QuikSilver and Billabong, and forced the company to shut down computing systems all over the world.
PEXSuperstore
November 4, 2019
•[ financial, malware, retail ]
Researchers from PerimeterX reveal that PEXSuperstore.com is the latest victim of a Magecart attack (simultaneously by two different criminal groups).
Bed Bath & Beyond
October 29, 2019
•[ leak, retail ]
Bed Bath & Beyond discloses that an unauthorized party obtained login information for some of its customers (1% of customer base).
Krystal
October 28, 2019
•[ retail ]
U.S. fast-food restaurant chain Krystal discloses a security incident involving one of is payment processing systems and affecting some of its restaurants between July and September 2019.
Sixth June
October 28, 2019
•[ financial, malware, retail ]
French fashion online store Sixth June is infected some time ago with code that steals payment card info at checkout.
TOMS Shoes
October 6, 2019
•[ hack, retail ]
A hacker dubbed Nathan uses the mailing list of retailer TOMS Shoes to tell users it's time to log off.
Schlotzsky's
October 2, 2019
•[ hack, malware, retail ]
McAlister's Deli, Moe's Southwest Grill, and Schlotzsky's (all of them owned by Focus Brands) disclose publicly that their networks were infected with point-of-sale malware.