Skip to content

Comment on The Target forensics lab (2024)parent

Comments

A lot has changed on the inside at Target since then. They’ve rolled the whole stack in house (even switching to Linux), locked down, and hardened a lot both inside and out.

I was amused finding out that cashiers basically no longer sign onto the registers using the register. They sign onto a myDevice (a Zebra handheld) elsewhere and keep it with them, then use that to scan a rotating PDF417 on screen on the register to complete signon as a 2FA device.

That’s on top of a lot of built in POS restrictions now to limit where certain transactions (like gift card functions) are completable to avoid people trying to swipe devices or signons from outer area unattended registers.

That signin via device is hilarious because it didn't work the last time I was there; the lady had to find someone else who could sign in for her because her device wasn't connecting or something.

I'm sure you meant the code was changing periodically, but now I'm expecting some pseudo-cyberpunk "rapidly spinning barcode" authenticator to show up in a movie...

AboutSource Built by g1lg1l

Hackerly is an independent reader for Hacker News, built on the public HN API. Not affiliated with Y Combinator.