ON AIR NOW

LISTEN NOW

Weather

cloudy-day
94°
Sunny
H 95° L 73°
  • cloudy-day
    94°
    Current Conditions
    Sunny. H 95° L 73°
  • clear-day
    74°
    Morning
    Sunny. H 95° L 73°
  • clear-day
    93°
    Afternoon
    Sunny. H 97° L 76°
LISTEN
PAUSE
ERROR

Krmg news on demand

00:00 | 00:00

LISTEN
PAUSE
ERROR

Krmg traffic on demand

00:00 | 00:00

LISTEN
PAUSE
ERROR

Krmg weather on demand

00:00 | 00:00

Report: Neiman Marcus missed 60,000 alerts about card hack

One month after Neiman Marcus was struck by a massive credit card hack, a new report published by Businessweek sheds more light into the breach. Among the revelations: The company apparently missed almost 60,000 security alerts about the hack.

According to an internal investigation by the high-end retailer, hackers infiltrated Neiman Marcus's computer system on March 5, 2013. Four months later, malware began stealing user information from Neiman Marcus stores around the country.

The company first disclosed the hack on Jan. 10, saying the malware had been active from July 16 to October 30. Company CEO Karen Katz previously told customers that over 1.1 million credit cards could have been compromised; that estimate has dropped to 350,000, with 9,200 showing signs of fraud.

>> Read more trending stories

The offending malware automatically reinstalled itself on Neiman Marcus registers after they had been wiped clean for the day — and in the process, the program tripped almost 60,000 security alerts.

How did the store miss such a massive breach?

A company spokeswoman told Businessweek the alerts were spread out over almost three months, and "would have been on average around 1 percent or less of the daily entries on these endpoint protection logs, which have tens of thousands of entries every day."

Gizmodo notes hackers took care to keep their intrusion inconspicuous — and took advantage of an odd security oversight on Neiman Marcus's part.

"The hackers gave their malicious software a name nearly identical to the official payment software, making it tough to distinguish suspicious activity from false positives. ... Neiman Marcus's system could have been set to automatically block the malware as soon as it detected anomalous activity but that feature was turned off because it was hampering legitimate maintenance programs."

Neiman Marcus was just one of the stores targeted during a rash of retailer data thefts in 2013 — most notably Target, which may have compromised the personal information of 110 million customers. The Justice Department is investigating both incidents, and Target is reportedly working on producing more secure credit cards, according to both C-SPAN and CNET.

One more interesting tidbit from the report — apparently the Neiman Marcus thieves aren't likely to be related to the Target hackers since they used a different methodology and have distinct coding styles.

Read More
VIEW COMMENTS

There are no comments yet. Be the first to post your thoughts. or Register.

  • A day before a key procedural vote on a GOP health care bill, President Donald Trump urged Republican Senators to follow through on their campaign pledge of the last seven years to get rid of the Obama health law, declaring that the time has come for the GOP to move ahead on the issue. “So far Senate Republicans have not done their job in ending the Obamacare nightmare,” the President said during an afternoon health care event at the White House. “Every Republican promised immediate relief,” the President reminded GOP Senators of their campaign pledges, saying it’s time for Republicans to fulfill their promise to “repeal and replace” the Obama health law. Trump on Obamacare: 'Every pledge that Washington Democrats made to pass that bill turned out to be a lie. It was a big, fat, ugly lie.' pic.twitter.com/MobkUMxRL1 — NBC News (@NBCNews) July 24, 2017 Before his remarks, Mr. Trump had met with voters from Ohio and West Virginia, states where Sen. Rob Portman (R-OH) and Sen. Shelley Moore Capito (R-WV) have been on the fence about supporting emerging GOP plans in the Senate. “Any Senator who votes against starting debate is telling America that you are fine with the Obamacare nightmare, which is what it is,” the President said. “This is their chance to keep their promise. Over and over again, they said, repeal and replace, repeal and replace,” the President added, leaning on undecided Republicans. “There is still time to do the right thing,” Mr. Trump said, arguing it’s time to keep this campaign promise. GOP leaders meanwhile were signaling that it was full-speed-ahead on a Tuesday vote on the ‘motion to proceed’ – basically, a vote on whether to officially begin debate. Cornyn says 'there will be a vote tomorrow' on the motion to proceed to the health care bill. — Frank Thorp V (@frankthorp) July 24, 2017 It still wasn’t apparent on Monday afternoon whether GOP leaders would actually have a majority of votes to begin debate – as the absence of Sen. John McCain (R-AZ), recently diagnosed with brain cancer, could leave Republicans just short of victory. But also clouding the Senate calculus was the unknown of what GOP leaders would offer to the bill in terms of policy changes, as top Republicans are still evaluating the final details of a plan to be offered by Senate Majority Leader Mitch McConnell. tfw you've spent seven years attacking Dems for not being transparent about what was in Obamacare pic.twitter.com/JMmE8Forih — Dave Weigel (@daveweigel) July 24, 2017 But for now, that vote is on for Tuesday – with details still to be filled in. “The American people have waited long enough,” the President said.
  • A medical marijuana businessman in Maine is offering weed for weeds in a program to encourage Gardiner residents to clean up their city. WCSH-TV reports that Dennis Meehan, owner of Summit Medical Marijuana, offered residents who collected trash Saturday free marijuana. The businessman says anyone who was over 21 was offered free marijuana if they presented a bag of trash that was collected in town. Meehan's company advertised the cleanup effort on Facebook, and he says he hopes to expand what he calls 'the day of service' program to the entire state. Mehan says the program is about bringing awareness to the 'life-changing' nature of cannabis as well. Gifting marijuana is legal in Maine. Meehan says he got the idea for the swap from a Colorado town's similar program.
  • A California teen is accused of driving under the influence and livestreaming video of a crash that killed her sister. >> Watch the news report here (WARNING: Viewer discretion advised) According to KFSN, Obdulia Sanchez, 18, of Stockton, was arrested Friday and charged with DUI and vehicular manslaughter while under the influence in the Merced County crash, which left her sister, 14-year-old Jacqueline Sanchez, dead and another girl 'badly injured.' The California Highway Patrol said Sanchez was behind the wheel Friday evening when her 2003 Buick swerved, slammed through a barbed-wire fence and rolled over, KTXL reported. Sanchez's two passengers – Jacqueline and another 14-year-old girl – weren't wearing seat belts and were ejected from the car, the CHP said. >> Read more trending news A chilling Instagram livestream that Sanchez filmed, according to family members, showed the crash and its harrowing aftermath, KFSN reported. 'I killed my sister,' Sanchez said in the recording, according to KFSN. 'I know I'm going to prison, but I don't care. I'm sorry, baby.' Read more here or here.
  • A 23-year-old South Carolina man has been arrested on animal cruelty charges after a chained dog wearing a belt as a collar choked to death trying to crawl to shade in his yard. Keon Torrence Gladden, of Great Falls, has been charged with one count of ill treatment of animals. A concerned neighbor called police to Gladden’s Walnut Street home on July 10 and added that he’d checked on the blue pit bull before and believed it was being abused, according to The Island Packet. In the most recent call, the neighbor said the dog was dead. The animal’s body was “bloating and covered in flies and maggots,” according to the Bluffton newspaper and a police report. While there was a doghouse for the animal to lay in, the dog’s chain was too short to reach the shelter. The dog’s carcass was near food and water bowls, both described as “dry and dusty” in the state’s July heat. Accuweather says the town saw highs in the low 90s for most of the month. If convicted, South Carolina law says that Gladden could see 90 days in prison, a fine between $100 and $1000 or both.
  • Two elephants that were swept out to sea were rescued by Sri Lanka's navy on Sunday, according to a CBS report.  >> Watch video of the rescue here The navy patrol located the elephants more than a half a mile from the shore, the navy said in a news release. >> Elephant swept out to sea rescued 10 miles off coast by Sri Lankan navy CBS reported that the animals, who likely were swept out while crossing a lagoon, were in distress. >> See photos of the rescue here The navy and wildlife officials sent in vessels and divers as part of its 'mammoth effort,” the news release said. >> Need something to lift your spirits? Read more uplifting news The elephants were “carefully directed to the shore without causing any harm to the animals” and released into the Foul Point jungle, the navy said. >> Read more trending news Read more here.