PaymentsJournal
No Result
View All Result
SIGN UP
  • Commercial
  • Credit
  • Debit
  • Digital Assets & Crypto
  • Digital Banking
  • Emerging Payments
  • Fraud & Security
  • Merchant
  • Prepaid
PaymentsJournal
  • Commercial
  • Credit
  • Debit
  • Digital Assets & Crypto
  • Digital Banking
  • Emerging Payments
  • Fraud & Security
  • Merchant
  • Prepaid
No Result
View All Result
PaymentsJournal
No Result
View All Result

Merchant POS Sites Offer Hacker Heaven

By Raymond Pucci
November 14, 2017
in Analysts Coverage
0
1
SHARES
0
VIEWS
Share on FacebookShare on TwitterShare on LinkedIn
Hand of woman paying with contactless credit card, NFC technology

Hand of woman paying with contactless credit card with NFC technology in an electrical shop, credit card reader, payment terminal, finance concept

There are two kinds of merchant POS stations—those that have been hacked and those that will be. As the following article relates, payment transaction data offers a treasure trove for fraudsters to ply their trade.

Every day, with every swipe of a credit card and every voluntary disclosure of personal data, individuals are putting themselves at risk.

An immeasurable number of organizations have sensitive personal data, such as credit card info, on file. But the reality is, nothing from the staples of American strip malls, such as Target, Home Depot, Whole Foods and Sonic, to mom and pop shops are safe from breaches.

Point of sale (POS) system breaches continue to dog retailers and customers, despite many industry best practices. Large swathes of credit card data make POS systems an appealing and highly profitable target for hackers, and companies need to fortify their bottom line security to avoid the common mistakes that result in most breaches.

Retail, hospitality and restaurant businesses, among others, use POS software to track sales, cash flow, inventory and other related data. No modern sales-based company can operate solely with a traditional cash register thanks to the rise of credit cards and digital payments.

But the average consumer would be hard pressed to find a single one of their cards which has not been used at a merchant with a compromised POS system. “Organized crime gangs have so completely overrun the hospitality and restaurant point-of-sale systems here in the United States that I just assume my card may very well be compromised whenever I use it at a restaurant or hotel bar/eatery,” said Brian Krebs in his review of the 24×7 Hospitality Technology POS breach.

In fact, approximately 23% of breaches take place through a POS system, according to Stephen Boyer, CTO and founder of BitSight Technologies, which rates companies based on cybersecurity performance. But merchants are not always immediately at fault for a breach.

POS systems are often contracted out to third-party providers, which lessens the IT burden on a company but places security in the hands of an outsider. Based on varying estimates, roughly 60-70% of POS breaches involve a third party, according to Boyer.

Criminal hackers prey on POS terminals because, well—that’s where the money, or cardholder data, is. Larger merchants are especially vulnerable due to the multi-terminal stores they operate including unattended checkout counters. Hospitality businesses often have POS terminals in remote areas of their properties. Then there is also the issue of many third party vendors that have access, although limited, to merchant IT systems. Lesson learned: hire and stay close to a security and fraud management firm.

Overview by Raymond Pucci, Associate Director, Research Services at Mercator Advisory Group

Read the full story here

1
SHARES
0
VIEWS
Share on FacebookShare on TwitterShare on LinkedIn
Tags: MerchantsPoint of SaleSecurity

    Get the Latest News and Insights Delivered Daily

    Subscribe to the PaymentsJournal Newsletter for exclusive insight and data from Javelin Strategy & Research analysts and industry professionals.

    Must Reads

    ai phishing

    The Fraud Epidemic Is Testing the Limits of Cybersecurity

    February 6, 2026
    stablecoins b2b payments

    Stablecoins and the Future of B2B Payments: Faster, Cheaper, Better

    February 5, 2026
    Payment Facilitator

    The Payment Facilitator Model as a Growth Strategy for ISVs

    February 4, 2026
    Simplifying Payment Processing? Payment Orchestration Can Help , multi-acquiring merchants

    Multi-Acquiring Is the New Standard—Are Merchants Ready?

    February 3, 2026
    ACH Network, credit-push fraud, ACH payments growth

    What’s Driving the Rapid Growth in ACH Payments

    February 2, 2026
    chatgpt payments

    How Merchants Should Navigate the Rise of Agentic AI

    January 30, 2026
    fraud passkey

    Why the Future of Financial Fraud Prevention Is Passwordless

    January 29, 2026
    payments AI

    When Can Payments Trust AI?

    January 28, 2026

    Linkedin-in X-twitter
    • Commercial
    • Credit
    • Debit
    • Digital Assets & Crypto
    • Digital Banking
    • Commercial
    • Credit
    • Debit
    • Digital Assets & Crypto
    • Digital Banking
    • Emerging Payments
    • Fraud & Security
    • Merchant
    • Prepaid
    • Emerging Payments
    • Fraud & Security
    • Merchant
    • Prepaid
    • About Us
    • Advertise With Us
    • Sign Up for Our Newsletter
    • About Us
    • Advertise With Us
    • Sign Up for Our Newsletter

    ©2024 PaymentsJournal.com |  Terms of Use | Privacy Policy

    • Commercial Payments
    • Credit
    • Debit
    • Digital Assets & Crypto
    • Emerging Payments
    • Fraud & Security
    • Merchant
    • Prepaid
    No Result
    View All Result