Whole Foods says it has 'resolved' point-of
Full article459 words · extracted from cyberscoop.com · click to collapse
Get our latest cybersecurity news first on Google.
Whole Foods says it has resolved a data breach that it reported last month, in which the company detected unauthorized access to credit card information in some point-of-sale systems.
Whole Foods says it has resolved a data breach that it reported last month, in which the company detected unauthorized access to credit card information in some point-of-sale systems.
The grocery chain released a statement Friday that it investigated the incident with law enforcement and “a leading cyber security forensics firm.” The company said it has stopped the unauthorized access and replaced the compromised point-of-sale systems.
Whole Foods detected unauthorized software on its payment systems that serve taprooms and restaurants at some of its stores, the statement said.
The company says those payment systems are separate from its main grocery store point-of-sale systems.
“The software copied payment card information—which could have included payment card account number, card expiration date, internal verification code, and cardholder name—of customers who used a payment card at these venues,” the company said.
Whole Foods has not said how many customers may have been impacted, but did say that the impact falls on some sales between March 10 and Sept. 28, 2017.
In saying that it has “resolved” the issue, the company seems to be referring to the unauthorized activity on its own systems only. It is still recommending that customer check for unauthorized use of their credit cards.
You can check to see if a Whole Foods location you’ve visited was affected on the company’s website.
Latest Podcasts
Government
FBI officials say AI is bolstering adversaries, emphasizing need to focus on cyber basics, patching
Feds accuse China of ‘systematic’ distillation of U.S. AI models
CIA’s Michael Ellis says cyber intelligence is changing how the agency operates
The G7 tells industry to hurry up and prep for post-quantum encryption
Technology
Threats
Policy
Whistleblower says USPS deploying new, ‘untested’ IT systems governing mail-in ballots
‘Watershed 250’ test program in Texas looks to private sector for water cybersecurity help
Former sexual abuse victims say Grok used their images, videos to train deepfake capabilities
Cyber threats nudge Trump to sign executive order on foreign equipment in U.S. energy infrastructure
Text extracted automatically; images, tables and formatting may be missing. Original: https://cyberscoop.com/whole-foods-point-of-sale-breach/