Retail News

Cyber security for the retail Industry

cybersecurity in retail

Small businesses store and process lots of data that cybercriminals can use to their benefit. Banks are also legally obligated to ensure their users don’t engage in money laundering schemes. Cyberattackers can target customer deposits or personal details to perform financial fraud. Users also hold deposits in some institutions, and hackers will target such funds. Banks and financial institutions store a lot of personal data that hackers can use to commit fraud.

Most cybercriminals are after money, which explains why the financial sector is their best target. Educational platforms also carry lots of data that hackers can use for identity theft and other malicious activities. Ransomware is one of the most common attacks, where attackers ask for ransoms and threaten to delete databases. Healthcare is one of the most important industries in an economy — and it’s also one of the most targeted. The attack is meant to overuse the available resources and make the site unavailable to legitimate users. The hackers usually ask for a ransom in the form of payment to decrypt such files.

In summary, the Target case starkly illustrated how a cyber incident can swiftly escalate into a strategic crisis for a corporation – but also how robust risk management changes implemented afterward can strengthen resilience. These actions, while costly, were recognized as necessary investments to rebuild trust and reduce the likelihood of future incidents. The company accelerated a major upgrade to its payment technology, rolling out chip-and-PIN smart card readers in stores (ahead of many competitors) to encrypt card data and reduce fraud. Figure 1 provides a visual comparison of the scale of customer data exposure and financial losses, reinforcing the magnitude of the incident. This partner apparently did not have strong security controls, and Target did not have safeguards (like multi-factor authentication or stricter https://kenyanrides.com/bribery-among-large-retail-chains.html network access limits) to prevent the contractor’s credentials from being misused on the core network.

Related Articles

cybersecurity in retail

From stealthy PowerShell loaders to zero-day SharePoint exploits, attackers kept defenders on their heels. Businesses hire security experts to deal with attacks and inform users of their effects. For instance, using a combination of your names as a password makes it easy for hackers to access your accounts. Small and large businesses seek professionals to protect their business and customer data. Cyberattackers target different countries based on the resources that they own. Social engineering, phishing, insider threats and https://rogerdmoore.ca/ai-main/ai-in-retail ransomware are some of the cyberattacks that cybercriminals use to target small businesses.

  • Rather than reactively cleaning up after an incident, a retailer that leverages threat intelligence can anticipate certain attack patterns (such as a wave of credential stuffing attacks or DDoS extortion attempts during holiday sales) and put preventive measures in place.
  • Identify, evaluate, and mitigate risks to create a safe and secure environment for your employees and customers.
  • The number of unique users in the Retail & E-commerce sector who encountered ransomware detections increased by 152% in 2025 compared to 2023 (Nov 2024 – Oct 2025 vs. Nov 2022 – Oct 2023).
  • Ransomware is one of the most common attacks, where attackers ask for ransoms and threaten to delete databases.
  • It’s also a reminder that even the most advanced systems rely on people, making ongoing staff training and education just as essential as any technical solution.

cybersecurity in retail

That https://dallasrentapart.com/the-role-of-cctv-in-retail-loss-prevention.html has enabled people who were in vastly different roles in the company to pursue a degree in cybersecurity or technology, some of whom are now in roles in my own department. Those degrees are offered at no cost and we advocated early on to include cybersecurity and technology degrees in those offerings. We also monitor because we want to understand how the tools are being used effectively in the environment internally. We educate people on the policy and the appropriate use of that new class of tool. We’ve seen a number of areas of our business experiment with these tools through different use cases, whether its driving efficiencies or increasing the efficacy of aspects of our business.

cybersecurity in retail

“The data suggests attackers have worked out exactly the same thing about retail’s security infrastructure,” he pointed out. Speaking with CX Today, Tim Waterton, CRO at HappyOrNot, draws a parallel between operational pressure and how attackers are targeting security infrastructure, suggesting the industry’s own complexity is being used against it. With breaches nearly doubling, retail’s structural complexity is increasingly becoming its most dangerous cybersecurity liability These incidents underscore the critical need for enhanced threat intelligence sharing and proactive vulnerability management across France’s retail and telecommunications sectors. The attack aligns with France’s challenging cybersecurity landscape in 2025, which has witnessed major breaches, including the Bouygues Telecom incident affecting over six million customers with compromised banking details. Security analysts note that this data profile suggests attackers gained access to the retailer’s Customer Loyalty Management (CLM) database, likely through SQL injection vulnerabilities or privileged account compromise.

  • For instance, using a combination of your names as a password makes it easy for hackers to access your accounts.
  • In May, cybercriminals infiltrated TeleMessage, a compliance messaging app used by US government officials—including those from FEMA, CBP, etc.
  • Target, a U.S. big-box retailer, was infiltrated by attackers in late November 2013, and over several weeks the attackers extracted massive amounts of customer data before the breach was discovered in December.
  • Core principles include encryption of payment data, network segmentation to isolate POS systems, regular audits, and vulnerability management.
  • To reduce the risk of gaps in network visibility, FireMon offers real-time network and device discovery with automatic device profiling and custom details.
  • The client’s environment includes Google Chronicle SIEM for log management and detection, CrowdStrike for endpoint detection and response, Microsoft Entra for identity management, and Google SecOps SOAR.

cybersecurity in retail

Nation-state hackers and hacktivists also made their mark, using the turbulent geopolitical climate to launch attacks. The intrusions matched Scattered Spider’s known tactical profile, though no ransomware was deployed, and systems remained operational. To maximize pressure, Qilin went beyond encryption, leveraging legal-themed extortion tactics like a “Call Lawyer” feature and automated negotiation tools to drive faster payouts. It tricks users into running payloads through File Explorer, bypassing typical security detections. This report breaks down the season’s most high-impact incidents and what security teams need to do before the next wave hits.

Valuation is complex, but we’re here to simplify it.

The price of failure can be steep for compliance violations with fines ranging from $5,000 to $100,000 per month, which can increase over time if an organization remains out of compliance. The retail industry’s approach to IT security has often been reactive, with cybersecurity investment sometimes lagging behind other industries due to smaller profit margins. Retailers, in particular, are attractive targets due to large repositories of customer data and often inadequate security measures. As the 2024 and 2025 cases show, OAuth tokens, remote support tools, and cloud integrations often carry broad, persistent access that’s easy to overlook and painful to unwind once an incident is underway. Across these cybersecurity incidents, the common thread isn’t ultra-sophisticated magic tricks – it’s basic weaknesses in identity, configuration, and trust.