{"id":100144,"date":"2018-04-20T20:15:04","date_gmt":"2018-04-20T20:15:04","guid":{"rendered":"http:\/\/sftarticles.wpenginepowered.com\/en\/?p=100144"},"modified":"2025-07-01T23:32:28","modified_gmt":"2025-07-02T06:32:28","slug":"heres-how-hackers-get-your-info-from-the-stores-you-shop-at","status":"publish","type":"post","link":"https:\/\/cms-articles.softonic.io\/en\/heres-how-hackers-get-your-info-from-the-stores-you-shop-at\/","title":{"rendered":"Here\u2019s how hackers get your info from the stores where you shop"},"content":{"rendered":"<p>Data breaches and major hacks are a dime a dozen these days.<\/p>\n<p>Recently, Saks Fifth Avenue and Lord &amp; Taylor experienced a wide-scale attack, which resulted in the corruption <a href=\"https:\/\/www.nytimes.com\/2018\/04\/01\/technology\/saks-lord-taylor-credit-cards.html\">of more than 5 million customer<\/a> credit and debit card numbers.<\/p>\n<p>The information was stolen thanks to a unique software planted within their point-of-sale and cash register systems.<\/p>\n<p>The attack siphoned a continuous stream of financial details, up until last month when it was discovered.<\/p>\n<p>It is now one of the largest known breaches of a major retailer, alongside Target\u2019s 2013 breach, Home Depot\u2019s 2014 breach, and <a href=\"https:\/\/www.washingtonpost.com\/news\/the-switch\/wp\/2018\/03\/01\/equifax-keeps-finding-millions-more-people-who-were-affected-by-its-massive-data-breach\/?utm_term=.4e718dc6d299\">2017\u2019s Equifax breach<\/a>.<\/p>\n<p>It begs the question, how do hackers manage such attacks? What tools and systems do they use to gather all that sensitive information?<\/p>\n<h2>How hackers make their mark<\/h2>\n<p>One of the most common forms of attack is called phishing, which essentially clones an official portal or website making you think you\u2019re visiting an actual brand\u2019s page.<\/p>\n<p>Generally, they trick you into providing personal information when you try to log in, such as payment information.<\/p>\n<p>Ransomware is another common attack, which seizes a system and data and then demands a monetary payment to re-access.<\/p>\n<p>Unfortunately, even after payment, those affected hardly ever get access to their data and systems back.<\/p>\n<p>In the case of large-scale data breaches, such as those Saks encountered, hackers will take advantage of security vulnerabilities within their internal systems.<\/p>\n<p>In the most recent case, the thieves gained direct access to payment systems and stole data from customers making purchases at retail brick-and-mortar stores and online. The major Target breach involved a similar attack.<\/p>\n<p>In Equifax\u2019s case, the breach was a bit less complicated. Hackers gained access to the companies virtual system and made off with data files containing sensitive details.<\/p>\n<p>If and when these data files are not properly protected \u2014 using encryption or the like \u2014 the hackers can read sensitive information contained within the files.<\/p>\n<p>It\u2019s not a secret that for these kinds of attacks, negligence is one of the most damaging problems \u2014 they can easily prevent or stunt using proper security measures.<\/p>\n<p>The problem with modern attacks and breaches is that the onus for proper security belongs to everyone, from the store, to the systems and electronics providers, to even you, the consumer.<\/p>\n<p>It\u2019s such a fragmented responsibility that it\u2019s truly tough to maintain in any reasonable manner. You can do your best, but there\u2019s no guarantee the other involved parties will.<\/p>\n<p>That doesn\u2019t mean you shouldn\u2019t focus on maintaining personal security when you can, however.<\/p>\n<p>It\u2019s important that companies have both in-store and online security measures in place, such as real-time notifications, two-factor authentication, verification checks and captchas.<\/p>\n<p>Even an unsecured CMS <a href=\"https:\/\/www.vasont.com\/blog\/safety-and-security-your-cms\">can have serious repercussions<\/a>, which is why brands must also practice good security too.<\/p>\n<h2>How can you protect your data?<\/h2>\n<p>While many of the above descriptors are generalized, hackers tend to use the same methods and vulnerabilities to gain access to various systems.<\/p>\n<p>What we didn\u2019t cover is the common issue of improper personal security.<\/p>\n<p><span style=\"font-size: 23px; font-weight: 900;\">1. Use strong passwords<\/span><\/p>\n<p>Using strong passwords with a healthy combination of upper and lowercase letters, as well as numbers and symbols, can make it more difficult for anyone to guess or discern your account info.<\/p>\n<p>More importantly, never use the same password across various accounts. If one is compromised, then hackers are smart enough to try using it for other accounts associated with your particular email or username.<\/p>\n<p>They could effectively gain access to even more accounts and information using the one password.<\/p>\n<p>It\u2019s good practice to use strong passwords, never reuse them and never share them with friends, family or colleagues. Software like Lastpass can keep tabs on your passwords so you won&#8217;t forget.<\/p>\n<div class=\"sc-card-program\">\r\n  <div class=\"sc-card-program__body\">\r\n    <div class=\"sc-card-program__row clearfix\">\r\n      <div class=\"sc-card-program__col-logo\">\r\n        <img decoding=\"async\" class=\"sc-card-program__img\" alt=\"Lastpass\" src=\"https:\/\/images.sftcdn.net\/images\/t_optimized,f_auto\/p\/a3758f98-9b22-11e6-87f8-00163ec9f5fa\/2829086021\/lastpass-logo.png\" width=\"100px\" height=\"100px\">\r\n      <\/div>\r\n      <div class=\"sc-card-program__col-title\">\r\n        <span class=\"sc-card-program__title\">Lastpass<\/span>\r\n        <a class=\"sc-card-program__button sc-card-program-internal\" href=\"https:\/\/lastpass.en.softonic.com\/\" target=\"_self\" rel=\"noopener noreferrer\">Download Lastpass<\/a>\r\n      <\/div>\r\n      <div class=\"sc-card-program__col-rating\">\r\n        <svg class=\"rating-score__content\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" version=\"1.1\" x=\"0\" y=\"0\" viewbox=\"0 0 50 50\" enable-background=\"new 0 0 50 50\" xml:space=\"preserve\"><path class=\"rating-score__background rating-score--good\" fill=\"none\" stroke-width=\"6\" stroke-miterlimit=\"10\" d=\"M40 40c8.3-8.3 8.3-21.7 0-30s-21.7-8.3-30 0 -8.3 21.7 0 30\"><\/path><path class=\"rating-score__value rating-score__value--80\" fill=\"none\" stroke-width=\"6\" stroke-dashoffset=\"80\" stroke-miterlimit=\"10\" d=\"M40 40c8.3-8.3 8.3-21.7 0-30s-21.7-8.3-30 0 -8.3 21.7 0 30\"><\/path><text class=\"rating-score__number\" content=\"8\" text-anchor=\"middle\" transform=\"matrix(1 0 0 1 25 31.0837)\" data-auto=\"app-user-score\">8<\/text><\/svg>\r\n      <\/div>\r\n    <\/div>\r\n    <div class=\"sc-card-program__row\">\r\n      <span class=\"sc-card-program__description\"><\/span>\r\n    <\/div>\r\n    <div class=\"sc-card-program__row\">\r\n      <img decoding=\"async\" class=\"sc-card-program__bigpic\" src=\"\" onerror=\"this.style.display='none'\">\r\n    <\/div>\r\n    <a class=\"sc-card-program__link track-link sc-card-program-internal\" href=\"https:\/\/lastpass.en.softonic.com\/\" target=\"_self\" rel=\"noopener noreferrer\"><\/a>\r\n  <\/div>\r\n<\/div>\n<p><span style=\"font-size: 23px; font-weight: 900;\">2. Mind companies&#8217; reputations<\/span><\/p>\n<p>Pay attention to a company or website\u2019s reputation before handing over your personal details. Providing an email for a newsletter subscription is not necessarily so risky.<\/p>\n<p>But allowing a retailer to save your credit and billing info for later can be dangerous. It\u2019s possible to make purchases on a website or storefront, without saving this information \u2014 putting an awful lot of trust in the organization to protect your data.<\/p>\n<p><span style=\"font-size: 23px; font-weight: 900;\">3. Use cash or credit<\/span><\/p>\n<p>Try to avoid using debit cards and bank cards which offer direct access to your funds.<\/p>\n<p>Instead, opt for a credit card when making online purchases, or buying goods and services from a party you don\u2019t know well enough.<\/p>\n<p>Most credit card companies and services offer fraud protection. While thieves could access your credit card number, they cannot directly access your bank funds.<\/p>\n<p><span style=\"font-size: 23px; font-weight: 900;\">4. Always review your statements<\/span><\/p>\n<p>Pay close attention to your online and banking statements and keep an eye out for fraudulent or strange activity.<\/p>\n<p>The sooner you realize and file claims when something happens, the better off you\u2019ll be both financially and security-wise.<\/p>\n<p>If you think something is wrong, simply get in touch with your card provider and have them cancel your current variant and send a new one. They will often do this with no hassle, especially when potential fraud may have occurred.<\/p>\n<p><span style=\"font-size: 23px; font-weight: 900;\">5. Enable real-time notifications<\/span><\/p>\n<p>Some financial providers and institutions even offer real-time notifications for purchases and changes on a card or account.<\/p>\n<p>If you have the option, always enable these features so you\u2019ll get up-to-date reminders on what\u2019s happening with your account.<\/p>\n<p><span style=\"font-size: 23px; font-weight: 900;\">6. Enable 2FA when applicable<\/span><\/p>\n<p>You should also enable two-factor authentication (2FA) for any accounts or personal logins where applicable.<\/p>\n<p>This forces you to enter a temporary code \u2014 sent either to your phone through text, a mobile app or email \u2014 to verify your identity before accessing your account.<\/p>\n<p>It ensures your information and accounts are not compromised, even if the connected passwords are. You need a second layer of security details to gain access, hence the name two-factor.<\/p>\n<h2>Stay aware of hacking trends<\/h2>\n<p>The best line of defense, at least on a personal level, is to remain in touch with what happens around you.<\/p>\n<p>Pay attention to the major data breaches happening, and if you\u2019re affected or believe you may be, then start paying closer attention to your credit reports and financial statements.<\/p>\n<p>Naturally, you should do this already, but it\u2019s still an important step to note.<\/p>\n<p>Finally, make use of all the additional security measures and processes available to you, such as two-factor authentication, security pin numbers, and strong passwords.<\/p>\n<p>So long as you adamantly protect your own personal security, it will serve as the last line of defense if and when a company you shop with drops the ball.<\/p>\n<div class=\"sc-related-articles-grey\">\r\n<p class=\"sc-related-articles-grey__title\">More Softonic Articles<\/p>\r\n  <div class=\"sc-related-articles-grey__row\">\r\n    <a title=\"5 tips to prevent security issues with your phone\" href=\"https:\/\/en.softonic.com\/articles\/5-tips-to-prevent-security-issues-with-your-phone\">\r\n    <div class=\"sc-related-articles-grey__article\">\r\n      <div class=\"sc-related-articles-grey__image\">\r\n        <div style=\"background-image:url(https:\/\/articles-img.sftcdn.net\/sft\/articles\/auto-mapping-folder\/sites\/3\/2018\/03\/Screen-Shot-2018-03-19-at-12.34.02.png)\"><\/div>\r\n      <\/div>\r\n      <div class=\"sc-related-articles-grey__text\">\r\n        <p>5 tips to prevent security issues with your phone<\/p>\r\n      <\/div>\r\n    <\/div>\r\n    <\/a>\r\n    <a title=\"8 tricks to strengthen your WhatsApp security\" href=\"https:\/\/en.softonic.com\/articles\/8-tricks-to-strengthen-your-whatsapp-security\">\r\n    <div class=\"sc-related-articles-grey__article sc-related-articles-grey__article--last\">\r\n      <div class=\"sc-related-articles-grey__image\">\r\n        <div style=\"background-image:url(https:\/\/articles-img.sftcdn.net\/sft\/articles\/auto-mapping-folder\/sites\/3\/2017\/11\/whatsapp-web-screenshot-1024x576-1024x576.png)\"><\/div>\r\n      <\/div>\r\n      <div class=\"sc-related-articles-grey__text\">\r\n        <p>8 tricks to strengthen your WhatsApp security<\/p>\r\n      <\/div>\r\n    <\/div>\r\n    <\/a>\r\n  <\/div>\r\n  <div class=\"sc-related-articles-grey__row\">\r\n    <a title=\"7 mistakes that put your internet security at risk\" href=\"https:\/\/en.softonic.com\/articles\/mistakes-internet-security-risk\">\r\n    <div class=\"sc-related-articles-grey__article\">\r\n      <div class=\"sc-related-articles-grey__image\">\r\n        <div style=\"background-image:url(https:\/\/articles-img.sftcdn.net\/sft\/articles\/auto-mapping-folder\/sites\/3\/2017\/06\/5mistakesHeader-1024x576.jpg)\"><\/div>\r\n      <\/div>\r\n      <div class=\"sc-related-articles-grey__text\">\r\n        <p>7 mistakes that put your internet security at risk<\/p>\r\n      <\/div>\r\n    <\/div>\r\n    <\/a>\r\n    <a title=\"8 tricks to boost your security on Google Chrome\" href=\"https:\/\/en.softonic.com\/articles\/8-tricks-to-boost-your-security-on-google-chrome\">\r\n    <div class=\"sc-related-articles-grey__article sc-related-articles-grey__article--last\">\r\n      <div class=\"sc-related-articles-grey__image\">\r\n        <div style=\"background-image:url(https:\/\/articles-img.sftcdn.net\/sft\/articles\/auto-mapping-folder\/sites\/3\/2017\/11\/crome-security-1024x576-1024x576.jpg)\"><\/div>\r\n      <\/div>\r\n      <div class=\"sc-related-articles-grey__text\">\r\n        <p>8 tricks to boost your security on Google Chrome<\/p>\r\n      <\/div>\r\n    <\/div>\r\n    <\/a>\r\n  <\/div>\r\n<\/div>\n","protected":false},"excerpt":{"rendered":"<p>Data breaches and major hacks are a dime a dozen these days. Recently, Saks Fifth Avenue and Lord &amp; Taylor experienced a wide-scale attack, which resulted in the corruption of more than 5 million customer credit and debit card numbers. The information was stolen thanks to a unique software planted within their point-of-sale and cash &hellip; <a href=\"https:\/\/cms-articles.softonic.io\/en\/heres-how-hackers-get-your-info-from-the-stores-you-shop-at\/\" class=\"more-link\">Continue reading<span class=\"screen-reader-text\"> &#8220;Here\u2019s how hackers get your info from the stores where you shop&#8221;<\/span><\/a><\/p>\n","protected":false},"author":9088,"featured_media":100147,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":"","wpcf-pageviews":0},"categories":[2441],"tags":[],"usertag":[],"vertical":[],"content-category":[],"class_list":["post-100144","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-how-to"],"aioseo_notices":[],"_links":{"self":[{"href":"https:\/\/cms-articles.softonic.io\/en\/wp-json\/wp\/v2\/posts\/100144","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/cms-articles.softonic.io\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/cms-articles.softonic.io\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/cms-articles.softonic.io\/en\/wp-json\/wp\/v2\/users\/9088"}],"replies":[{"embeddable":true,"href":"https:\/\/cms-articles.softonic.io\/en\/wp-json\/wp\/v2\/comments?post=100144"}],"version-history":[{"count":1,"href":"https:\/\/cms-articles.softonic.io\/en\/wp-json\/wp\/v2\/posts\/100144\/revisions"}],"predecessor-version":[{"id":328060,"href":"https:\/\/cms-articles.softonic.io\/en\/wp-json\/wp\/v2\/posts\/100144\/revisions\/328060"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/cms-articles.softonic.io\/en\/wp-json\/wp\/v2\/media\/100147"}],"wp:attachment":[{"href":"https:\/\/cms-articles.softonic.io\/en\/wp-json\/wp\/v2\/media?parent=100144"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/cms-articles.softonic.io\/en\/wp-json\/wp\/v2\/categories?post=100144"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/cms-articles.softonic.io\/en\/wp-json\/wp\/v2\/tags?post=100144"},{"taxonomy":"usertag","embeddable":true,"href":"https:\/\/cms-articles.softonic.io\/en\/wp-json\/wp\/v2\/usertag?post=100144"},{"taxonomy":"vertical","embeddable":true,"href":"https:\/\/cms-articles.softonic.io\/en\/wp-json\/wp\/v2\/vertical?post=100144"},{"taxonomy":"content-category","embeddable":true,"href":"https:\/\/cms-articles.softonic.io\/en\/wp-json\/wp\/v2\/content-category?post=100144"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}