Get ready for a facepalm: 90% of credit card readers currently use the same password.
Download Vanilla Reload Card Hack Software Download
If you have your keycode and only need the software download, enter your last name and email address. I need complete download instructions. If you need complete instructions that include your keycode and a link to download the software, check the box to receive an email. Launching Visual Studio Code. Your codespace will open once ready. There was a problem preparing your codespace, please try again. Load your prepaid card or online account using the secure PIN on the back of the Vanilla Reload by calling 1-877-429-8140 or by visiting VanillaReload.com. Load Directly at the Register Use the Money Network locator to find a participating reload location.
The passcode, set by default on credit card machines since 1990, is easily found with a quick Google searach and has been exposed for so long there's no sense in trying to hide it. It's either 166816 or Z66816, depending on the machine.
With that, an attacker can gain complete control of a store's credit card readers, potentially allowing them to hack into the machines and steal customers' payment data (think the Target(TGT) and Home Depot(HD)hacks all over again). No wonder big retailers keep losing your credit card data to hackers. Security is a joke.
This latest discovery comes from researchers at Trustwave, a cybersecurity firm.
Administrative access can be used to infect machines with malware that steals credit card data, explained Trustwave executive Charles Henderson. He detailed his findings at last week's RSA cybersecurity conference in San Francisco at a presentation called 'That Point of Sale is a PoS.'
The problem stems from a game of hot potato. Device makers sell machines to special distributors. These vendors sell them to retailers. But no one thinks it's their job to update the master code, Henderson told CNNMoney.
'No one is changing the password when they set this up for the first time; everybody thinks the security of their point-of-sale is someone else's responsibility,' Henderson said. 'We're making it pretty easy for criminals.'
Download Vanilla Reload Card Hack Software Windows 10
Trustwave examined the credit card terminals at more than 120 retailers nationwide. That includes major clothing and electronics stores, as well as local retail chains. No specific retailers were named.
The vast majority of machines were made by Verifone(PAY). But the same issue is present for all major terminal makers, Trustwave said.
A spokesman for Verifone said that a password alone isn't enough to infect machines with malware. The company said, until now, it 'has not witnessed any attacks on the security of its terminals based on default passwords.'
Just in case, though, Verifone said retailers are 'strongly advised to change the default password.' And nowadays, new Verifone devices come with a password that expires.
In any case, the fault lies with retailers and their special vendors. It's like home Wi-Fi. If you buy a home Wi-Fi router, it's up to you to change the default passcode. Retailers should be securing their own machines. And machine resellers should be helping them do it.
Trustwave, which helps protect retailers from hackers, said that keeping credit card machines safe is low on a store's list of priorities.
'Companies spend more money choosing the color of the point-of-sale than securing it,' Henderson said.
This problem reinforces the conclusion made in a recent Verizon cybersecurity report: that retailers get hacked because they're lazy.
The default password thing is a serious issue. Retail computer networks get exposed to computer viruses all the time. Consider one case Henderson investigated recently. A nasty keystroke-logging spy software ended up on the computer a store uses to process credit card transactions. It turns out employees had rigged it to play a pirated version of Guitar Hero, and accidentally downloaded the malware.
'It shows you the level of access that a lot of people have to the point-of-sale environment,' he said. 'Frankly, it's not as locked down as it should be.'
BY SIMON ZHEN
In the past few years, credit card companies have receive bad rap for wronging consumers, by doing things such as raising interest rates or reducing credit limits. Well, consumers haven’t exactly been honorable themselves. Savvy consumers have discovered ways to take advantage of credit card loopholes to maximize their card’s rewards program.
Many of these credit card hacks can put a ton of change in your pockets or result in significant savings.
See which ones may intrigue you enough to try them:
1. ”Nearly free” cash back
The recently-launched American Express Bluebird account has become a popular tool for schemers who were prowling for some added cash back. Bluebird is basically a prepaid card that has no activation fee or monthly fee; fund reloads are made possible through Vanilla Reload cards (the key to this hack).
Because Vanilla Reload cards (maximum reload value of $500 per card; $3.95 fee applies) can be purchased at supermarkets, drugstores and office supply stores, consumers can amass a large amount of cash back if they have the right credit cards.
continue reading »get the weekly newsletter... it's FREE!