Thank you for Subscribing to Retail Business Review Weekly Brief
Retail Business Review | Tuesday, December 27, 2022
When the pandemic struck, a wave of businesses was forced to sell the whole of their goods and services online.
FREMONT, CA: Many businesses were saved during the pandemic by online shopping and click-and-collect services. In turn, many businesses without an extensive online presence, or no presence, struggled or failed.
Still, the prevalence of online shopping also opens up new avenues of risk. Online retail has become a favorite target among cyber criminals in an industry that has traditionally only observed crime in shoplifting. As a result, it has been one of the most attacked sectors this year.
Stay ahead of the industry with exclusive feature stories on the top companies, expert insights and the latest news delivered straight to your inbox. Subscribe today.
Why are retailers so unprotected from cyber-attacks?: When the pandemic struck, a wave of businesses was forced to sell the whole of their goods and services online.
Five tech disputes facing retailers today: For attackers, this means a surge in the number of weak spots they could smoothly exploit.
Customer information may be the biggest target, including details from card payments and general personal information. In addition, retailers have access to sensitive customer data and utilize often-repeated login data for their accounts.
Check Out This : The Cyber Security Review
Being customer-centric, e-commerce sites & apps are also under pressure to be extremely user-friendly, often leaving out important security measures such as two-factor authentication that would create friction.
Add to this the highly competitive market that has pushed larger businesses to collect and analyze this data for more personalized experiences and marketing. As a result, retail has become an industry ripe for cybercrime.
With entrance to customer databases, criminals can send phishing emails faking to be a legitimate business, ask for personal details, transmit malicious links, or incorporate malware that can inflict havoc on a customer’s PC.
As businesses use cloud computing and third-party vendors, supply chains have become a common attack surface full of vulnerable touchpoints. Especially as retailers can’t often guarantee that their suppliers have robust cyber security, please or even take security as security seriously.
Issues remain outside of online sales as well, as retailers increase their use of IoT devices such as security cameras and point of sales systems, which, since they’re connected to the internet, are more exposed to attack than regular hardware. For example, a hacker can install malware on a PoS system that records card swipes and PINs and infects other parts of the system.
Credential theft is the most prevalent threat to corporate inboxes: Finally, the nature of the retail workforce poses a threat from within. With many turnovers and seasonal workers, former or disgruntled employees can compromise data by copying data onto a USB & walking out the door.
General cyber attacks that retailers face: Like insider threats & phishing emails, retailers experience a wide range of cyber attacks that can reason serious damage to their operations and reputations.
Any of the threats above can result in hackers or ex-employees leaking stolen data. As a result, retailers face financial loss through fines for violating GDPR and losing customer trust and business.
With a botnet attack, attackers can bring together an array of compromised devices and systems and utilize them to carry out attacks or sell access to the system to other malicious actors.
Ransomware is another major attack retailers face, often during busy times like Black Friday or the lead-up to Christmas. Attackers halt operations until businesses pay the ransoms, putting an enormous loss of revenue and customer confidence on the line.
Easy steps to protect your retail business from cyber threats
From the pandemic, it is clear being adaptable in all aspects is key to survival. An agile strategy incorporating machine learning and automation will help retailers maintain robust security systems in the face of future disruptions.
Phishing attacks increase as hackers takes advantage of the pandemic.
The onus shouldn’t be completely on CISOs and IT departments. Still, since security is a company-wide concern, there must be board-level buy-in.
Ensure all decision-makers comprehend the risk of any new tech, workflows, or partners you bring on in your efforts to increase revenue and digitize. As vendors in the supply chain are one major concern, be as proactive with their security practices as you are with your own, frequently questioning and monitoring.
More in News