America 's Thrift Stores announced on Friday that the financial information of some of its customers may have been stolen by hackers who used PoS malware for this attack.
America's Thrift Stores announced that it was attacked by PoS malware, which caused a data leak. According to the company, the threat actors are from Eastern Europe.
America's Thrift Stores is a charitable organization that collects used clothing and household goods from local communities and sells them, with a portion of the profits shared with Christian charities. The company operates 18 stores in Alabama, Georgia, Louisiana, Mississippi and Tennessee.
The attackers exploited software used by a third-party service provider, and the data breach exposed credit and debit card numbers and expiration dates, according to the US Secret Service, while customers' personal information (names, phone numbers, emails, and addresses) was not compromised.
“This breach may have affected sales transactions between September 1, 2015 and September 27, 2015. If you used your credit or debit card during this time to purchase an item from America's Thrift Store, your payment card information may have been compromised,” the company.
Individuals affected by the data breach are now vulnerable to other fraud attacks, so they should monitor all activity related to their credit or debit cards frequently. And of course, they should immediately report any suspicious activity they notice regarding their card transactions to law enforcement.
Mr. Sobaski also confirmed that America's Thrift Stores immediately notified law enforcement of the incident and that the U.S. Secret Service is investigating the matter.


