Skip to content
Fashion

Forever 21 investigating POS security breach

By Rajiv Menon
1 min read
forever21
forever21
In this article (5)

A Forever 21 data breach uncovered last November has prompted the fashion retailer to boost security at its checkout counters.

In the security scare, hackers installed malware on point-of-sale machines at store checkouts in the US.

A two-month long investigation has revealed that encryption technology on some POS devices at an unspecified number of stores was not always on and that malware had been installed by criminals looking to mine the system for customer payment data.

The breaches occurred between April 3 and November 18 last year, lasting between a few days and in some cases the entire period, the company has admitted. Forever 21 stores use multiple POS devices and in most cases only one or a few of the POS devices in a store were affected.

The malware searched for data on cards used for payments at the point-of-sale. In most cases, the data did not include the cardholder’s name, so was of no use to the hackers, but in a minority of instances, the cardholder’s name was found.

Forever 21 said it has been working with its payment processors, hardware suppliers and independent consultants to improve the encryption systems on the POS devices in all Forever 21 stores.

“We also continue to work with the payment card networks so that the banks that issue payment cards can be made aware of this incident,” the company said in a statement. “Lastly, we will continue to support law enforcement’s investigation of this incident.”

Questions & Answers

Q.

Which customer data was compromised by the malware installed on Forever 21's POS devices?

A.

The malware searched for payment card data at the point-of-sale. In most cases, this data did not include the cardholder's name, but a minority of instances did reveal the cardholder's name.

Q.

What was the cause of the security breach at Forever 21 stores?

A.

Hackers installed malware on point-of-sale machines at store checkouts in the US. An investigation found that encryption technology on some POS devices was not consistently active, allowing the malware to be installed.

Q.

How long did the data breaches last at the affected Forever 21 locations?

A.

The breaches occurred between April 3 and November 18 last year. They lasted for periods ranging from a few days to, in some cases, the entire duration between those dates.

Q.

What steps has Forever 21 taken to address the security issues?

A.

Forever 21 is working with payment processors, hardware suppliers, and independent consultants to improve encryption systems on all POS devices. They are also collaborating with payment card networks and supporting law enforcement's investigation.

Weekly Briefing

Asia's retail intelligence, in your inbox

Tuesday, Thursday and a Saturday Weekly Wrap: the retail stories, numbers and moves that mattered across Asia. Nothing else, and you can unsubscribe in one click.

  • Top industry moves and market shifts
  • Weekly data-driven analysis from across Asia
  • Tuesday, Thursday and the Saturday Weekly Wrap

Read by retail operators, investors and brand teams across Asia.

Protected by a quick human check. No spam, ever. Unsubscribe in one click.

SecureGDPR ready