Backoff Point-of-Sale Malware Alert


A new version of PoS (Point-of-Sale) Malware, “Backoff,” has been connected to several recent PoS data breaches. Malicious actors are looking for remote desktop solutions such as: MS-RDP, Apple RDP, Splashtop, LogMeIn,, and other similar solutions. After finding these remote access solutions running they attempt to brute force the login user, giving them access to privileged accounts typically. Once they have privileged access they attempt to deploy the “Backoff” PoS malware and start the exfiltration of PCI data via encrypted traffic.

Masergy Professional Security Services offers to our managed security customers recommendations to prevent, detect and thwart malicious threats.…