Kaspersky: Retail Cyberattacks Double in Three Years: Kaspersky

Kaspersky: Retail Cyberattacks Double in Three Years: Kaspersky

Retail Sector Faces Surge in Cyberattacks as Threats Evolve Beyond Data Theft

Cybersecurity incidents targeting the retail industry have more than doubled over the past three years, according to a recent report by Kaspersky, as attackers expand their focus beyond data theft to disrupt payment systems, supply chains, and business operations. The shift reflects the sector’s growing digital footprint, with retailers now managing vast amounts of sensitive data including payment credentials, loyalty program details, and customer profiles making them prime targets for financial fraud, identity theft, and dark web sales.

Claudio Martinelli, General Manager for the Americas at Kaspersky, emphasizes that cybersecurity is no longer a technical issue but a critical business requirement. A single breach can escalate into widespread operational disruptions, eroding customer trust and incurring costs of up to $91 million for large retailers due to regulatory penalties, legal fees, and recovery efforts. Payment systems, in particular, have become high-value targets, with attacks capable of causing losses of $20,000 per hour when online transactions or point-of-sale (POS) infrastructure are compromised.

Human error remains a leading vulnerability, with 64% to 86% of data breaches linked to employee mistakes, such as phishing, weak passwords, or improper credential management. Cybercriminals are increasingly leveraging AI-driven social engineering, including deepfakes, voice cloning, and Business Email Compromise (BEC) attacks, to manipulate retail staff. Recent incidents in the UK highlight the growing sophistication of these tactics, delivered via email, messaging apps, and collaboration platforms like Microsoft Teams.

Supply chain risks are also escalating, with 30% of retail attacks originating from third-party vendors, yet only 9% of executives prioritize this threat. Retailers’ reliance on external partners from logistics providers to cloud platforms creates vulnerabilities that can disrupt inventory, payments, and customer service. Despite the risks, many organizations continue to underestimate their exposure.

As cybercriminals gain access to leaked tools and AI-powered attack methods, Kaspersky warns that retailers must adopt a cyber-resilience mindset, prioritizing critical systems, employee training, advanced threat detection, and managed security services to mitigate evolving risks in an increasingly complex digital landscape.

Source: https://mexicobusiness.news/cybersecurity/news/retail-cyberattacks-double-three-years-kaspersky

Kaspersky cybersecurity rating report: https://www.rankiteo.com/company/kaspersky

"id": "KAS1783715465",
"linkid": "kaspersky",
"type": "Cyber Attack",
"date": "1/2024",
"severity": "100",
"impact": "5",
"explanation": "Attack threatening the organization's existence"
{'affected_entities': [{'industry': 'Retail', 'type': 'Retailers'}],
 'attack_vector': ['Phishing',
                   'AI-driven social engineering',
                   'Third-party vendors',
                   'Weak passwords',
                   'Improper credential management'],
 'data_breach': {'data_exfiltration': True,
                 'personally_identifiable_information': True,
                 'sensitivity_of_data': 'High',
                 'type_of_data_compromised': ['Payment credentials',
                                              'Loyalty program details',
                                              'Customer profiles']},
 'description': 'Cybersecurity incidents targeting the retail industry have '
                'more than doubled over the past three years, as attackers '
                'expand their focus beyond data theft to disrupt payment '
                'systems, supply chains, and business operations. The shift '
                'reflects the sector’s growing digital footprint, with '
                'retailers managing vast amounts of sensitive data including '
                'payment credentials, loyalty program details, and customer '
                'profiles, making them prime targets for financial fraud, '
                'identity theft, and dark web sales.',
 'impact': {'brand_reputation_impact': 'Erosion of customer trust',
            'data_compromised': ['Payment credentials',
                                 'Loyalty program details',
                                 'Customer profiles'],
            'financial_loss': '$91 million (large retailers)',
            'identity_theft_risk': True,
            'legal_liabilities': ['Regulatory penalties', 'Legal fees'],
            'operational_impact': ['Disruption of online transactions',
                                   'Inventory disruption',
                                   'Customer service disruption'],
            'payment_information_risk': True,
            'revenue_loss': '$20,000 per hour (during payment system outages)',
            'systems_affected': ['Payment systems',
                                 'Point-of-sale (POS) infrastructure',
                                 'Supply chain systems']},
 'initial_access_broker': {'data_sold_on_dark_web': True},
 'lessons_learned': 'Cybersecurity is no longer a technical issue but a '
                    'critical business requirement. Retailers must adopt a '
                    'cyber-resilience mindset, prioritizing critical systems, '
                    'employee training, advanced threat detection, and managed '
                    'security services.',
 'motivation': ['Financial fraud',
                'Identity theft',
                'Dark web sales',
                'Operational disruption'],
 'post_incident_analysis': {'root_causes': ['Human error (64% to 86% of '
                                            'breaches)',
                                            'Third-party vulnerabilities',
                                            'AI-driven social engineering']},
 'recommendations': ['Prioritize critical systems',
                     'Employee training',
                     'Advanced threat detection',
                     'Managed security services',
                     'Enhanced monitoring',
                     'Address third-party vendor risks'],
 'references': [{'source': 'Kaspersky Report'}],
 'regulatory_compliance': {'fines_imposed': 'Regulatory penalties'},
 'response': {'enhanced_monitoring': 'Advanced threat detection'},
 'title': 'Retail Sector Faces Surge in Cyberattacks as Threats Evolve Beyond '
          'Data Theft',
 'type': ['Data Breach',
          'Ransomware',
          'Supply Chain Attack',
          'Business Email Compromise (BEC)'],
 'vulnerability_exploited': ['Human error',
                             'Third-party vulnerabilities',
                             'Payment system weaknesses']}
Great! Next, complete checkout for full access to Rankiteo Blog.
Welcome back! You've successfully signed in.
You've successfully subscribed to Rankiteo Blog.
Success! Your account is fully activated, you now have access to all content.
Success! Your billing info has been updated.
Your billing was not updated.