Learn about Zero Trust Architecture
Impenetrable cybersecurity without sacrificing usability
Gain detailed visibility into all your endpoints activities
Harden applications and hardware environments
Immediate and continuous response to incidents
Close the window of time your data could be exposed
Get your Comodo solutions setup, deployed or optimized
Control access to malicious websites
Defend from any internet based threats
Stop email threats before it enters your inbox
Preserve and protect your sensitive data
Keep your website running fast and malware free
Add encryption to your websites
Automated certificate mgmt. platform
Secure private intranet environments
Digital signature solutions for cloud apps
Encrypt emails for senders and recipients
Stay compliant with PCI DSS
Trusted authentication for IoT devices
Francisco Partners a leading technology-focused private equity fund, has acquired a majority stake in Comodo’s certificate authority business. Newly renamed from Comodo CA Limited to Sectigo Limited. Privacy Policies, Trademarks, Patents and Terms & Conditions are available on Sectigo Limited’s web site.
Meet the people behind the direction for Comodo
Get the latest news about Comodo
People are the key to achievement and prosperity
Stay up to date with our on-demand webinars
Worldwide: Sales, Support and General Inquiries
Schedule a live demonstration of our solutions
Need immediate help? Call 1-888-551-1531
Instantly removes viruses to keep your PC virus free
Experience true mobile security on your mobile apple devices
Secure Internet Browser based on Chrome
Chrome browser internet security extension
Submit a ticket to our support team
Share any product bugs or security flaws
Collaborate with research experts on data sets
Valkyrie Threat Intelligence Plugins
Valkyrie Threat Intelligence APIs
The World's Only Complete Antivirus is now $17.99 a year for a limited time
Got more than 1 PC? Get 3 Licenses for $19.99 & Save 63%!
As if retail operations had enough to worry about with the wave of highly published data breaches, US Homeland Security is warning of a new malware threat that targets Point-of-Sale (POS) systems. In a 10 page advisory released last week, Homeland Security warns of a recently discovered family of POS malware they call “Backoff”.
“Backoff” is a family of POS malware and has been discovered recently. In addition, researchers have identified three primary variants. Backoff and its variant were first observed “in the wild” in October 2013 and continue to operate as of July 2014. Backoff POS malware could be used to expose sensitive personal information that could be used to commit identity theft and financial fraud, including credit/debit card date.
Hackers using Backoff first identify businesses that use popular remote desktop applications, such as Microsoft’s Remote Desktop, Apple Remote Desktop, Chrome Remote Desktop, Splashtop, Pulseway and LogMEIn. Then, the hackers attempted to gain access to them by identifying the login credentials for high privilege and administrator accounts using brute force techniques.
When successful the hackers are able to login to the target’s network, search for POS systems and deploy the Backoff software. If all goes well, from the attacker’s point of view, cardholder data will be encrypted and exfiltrates using a POST request .
The Backoff malware itself scrapes memory from running processes on the target to search for track data. A key logging functionality is also used to identify data. Backoff is able to upload discovered data, update the malware, download/execute additional malware and uninstall the malware to remove evidence.
Studies such as Verizon’s annual data breach report indicate that smaller retailers are particularly vulnerable because they do not treat POS systems as computers that need the basic protections of a Firewall and Antivirus protection.
While that is not an issue at most larger organizations, many do not take full use of endpoint security management and network administration systems to protect Point of Sale Systems. POS systems need to be isolated as much as possible from the rest of the corporate network, including limiting access to selected IP addresses and the effective use of sandboxing.
Sign up to our cyber security newsletter
Comodo Cybersecurity would like to keep in touch with you about cybersecurity issues, as well as products and services available. Please sign up to receive occasional communications. As a cybersecurity company, we take your privacy and security very seriously and have strong safeguards in place to protect your information.
See how your organization scores against cybersecurity threats