Jump to content

BlackPOS

From Wikipedia, the free encyclopedia
This is an old revision of this page, as edited by LaMona (talk | contribs) at 17:03, 28 June 2016 (formatting). The present address (URL) is a permanent link to this revision, which may differ significantly from the current revision.

BlackPOS or Interprocess communication hook malware is a type of Point of Sale Malware or spyware program which was specifically designed to be installed in a Point of Sale system to scrap data such as debit card and credit card.[1][2] This is very different from the normal memory scraping malware that scrapes all the data and needs filters to extract the particular data. But this specifically hook into the track information and hence been called as interprocess communication hook. This malware once gets installed looks for the pos.exe file in the system and parses the content of the track 1 and track 2 financial card data. [3][4] The scrapped data is then encoded with base64 algorithm and stored to the magnetic strip on the back side of the card . The encoded data is then moved to the second machine through SMB. Blackpos is the malware which was involved in massive Target data breach. [5][6]

See also

References