{"id":7272,"date":"2017-04-07T10:17:01","date_gmt":"2017-04-07T18:17:01","guid":{"rendered":"http:\/\/www.palada.net\/index.php\/2017\/04\/07\/news-1063\/"},"modified":"2017-04-07T10:17:01","modified_gmt":"2017-04-07T18:17:01","slug":"news-1063","status":"publish","type":"post","link":"http:\/\/www.palada.net\/index.php\/2017\/04\/07\/news-1063\/","title":{"rendered":"Gamestop.com Investigating Possible Breach"},"content":{"rendered":"<p><strong>Credit to Author: BrianKrebs| Date: Fri, 07 Apr 2017 16:57:11 +0000<\/strong><\/p>\n<p>Video game giant <strong>GameStop Corp.<\/strong>\u00a0 [NSYE: <a href=\"https:\/\/www.nyse.com\/quote\/XNYS:GME\" target=\"_blank\">GME<\/a>] says it is investigating reports that hackers may have siphoned credit card and customer data from its website &#8212;\u00a0<strong>gamestop.com<\/strong>. The company acknowledged the investigation after being contacted by KrebsOnSecurity.<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"alignright size-full wp-image-38928\" src=\"https:\/\/krebsonsecurity.com\/wp-content\/uploads\/2017\/04\/gs.png\" alt=\"gs\" width=\"285\" height=\"266\" \/>&#8220;GameStop recently received notification from a third party that it believed payment card data from cards used on the GameStop.com website was being offered for sale on a website,&#8221; a company spokesman wrote in response to questions from this author.<\/p>\n<p>&#8220;That day a leading security firm was engaged to investigate these claims. Gamestop has and will continue to work non-stop to address this report and take appropriate measures to eradicate any issue that may be identified,&#8221; the company&#8217;s statement continued.<\/p>\n<p>Two sources in the financial industry told KrebsOnSecurity that they have received alerts from a credit card processor stating that Gamestop.com was likely compromised by intruders between mid-September 2016 and the first week of February 2017.<\/p>\n<p>Those same sources said the compromised data is thought to include customer card number, expiration date, name, address and card verification value (CVV2), usually a 3-digit security code printed on the backs of credit cards.<\/p>\n<p>Online merchants are not supposed to store CVV2 codes, but hackers can steal the codes by <a href=\"https:\/\/krebsonsecurity.com\/2016\/04\/all-about-fraud-how-crooks-get-the-cvv\/\" target=\"_blank\">placing malicious software on a company&#8217;s e-commerce site<\/a>, so that the data is copied and recorded by the intruders before the data is encrypted and transmitted to be processed.<\/p>\n<p>GameStop would not comment on the possible timeframe of the suspected breach, or say what types of customer data might be impacted.<\/p>\n<p><span id=\"more-38927\"><\/span><\/p>\n<p>Based in Grapevine, Texas, GameStop generated more than <a href=\"http:\/\/news.gamestop.com\/phoenix.zhtml?c=130125&amp;p=irol-newsArticle&amp;ID=2256191\" target=\"_blank\">$8.6 billion in revenue in 2016<\/a>, although it&#8217;s unclear how much of that came through the company&#8217;s Web site. GameStop operates more than 7,000 retail stores through the United States, Canada, Australia, New Zealand and Europe. There is currently no indication that the company&#8217;s retail store locations may have been affected.<\/p>\n<p>According to Web site statistics firm <strong>Alexa.com<\/strong>, Gamestop.com is the 269th most popular Web site in the United States.<\/p>\n<p>&#8220;We regret any concern this situation may cause for our customers,&#8221; Game Stop said in its statement. &#8220;GameStop would like to remind its customers that it is always advisable to monitor payment card account statements for unauthorized charges. If you identify such a charge, report it immediately to the bank that issued the card because payment card network rules generally state that cardholders are not responsible for unauthorized charges that are timely reported.&#8221;<\/p>\n<p><a href=\"https:\/\/krebsonsecurity.com\/2017\/04\/gamestop-com-investigating-possible-breach\/\" target=\"bwo\" >https:\/\/krebsonsecurity.com\/feed\/<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p><img decoding=\"async\" src=\"https:\/\/krebsonsecurity.com\/wp-content\/uploads\/2017\/04\/gs.png\"\/><\/p>\n<p><strong>Credit to Author: BrianKrebs| Date: Fri, 07 Apr 2017 16:57:11 +0000<\/strong><\/p>\n<p>Video game giant GameStop Corp.  [NSYE: GME] says it is investigating reports that hackers may have siphoned credit card and customer data from its website &#8212; gamestop.com. The company acknowledged the investigation after being contacted by KrebsOnSecurity.<\/p>\n","protected":false},"author":4,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"colormag_page_container_layout":"default_layout","colormag_page_sidebar_layout":"default_layout","footnotes":""},"categories":[10643,10642],"tags":[11905,11906,10644],"class_list":["post-7272","post","type-post","status-publish","format-standard","hentry","category-independent","category-krebs","tag-gamestop-breach","tag-gamestop-com","tag-other"],"_links":{"self":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts\/7272","targetHints":{"allow":["GET"]}}],"collection":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/users\/4"}],"replies":[{"embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/comments?post=7272"}],"version-history":[{"count":0,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts\/7272\/revisions"}],"wp:attachment":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/media?parent=7272"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/categories?post=7272"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/tags?post=7272"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}