All Posts
Malware
Research
1
min read

2019 Attack Predictions for the Payment Sector

The Cyber Crime in the Payments Sector report from Anomali Labs explores trending threats, a strategic industry outlook, and recommendations for protecting organizations.
Published on
January 10, 2019
Table of Contents


Anomali Labs published this week a report, “Cyber Crime in the Payments Industry,” that examines threat trends affecting this sector. The report, available for download, details attacks and techniques, and provides recommendations for organizations that process credit card transactions.

The payments industry, including retail, hospitality, restaurants and payment processors, has long been a target for fraud and cybercrime. For malicious actors the attraction is obvious as successful attacks can produce significant rewards. One recent ATM Cash-Out scheme involved cloning of 450 cards within a 24-hour period and withdrawal of over $11.5 million across 28 countries. The Magecart cybercrime group leveraged vulnerabilities in web forms on merchant websites. These undetected breaches allowed credit card payment information to be collected from unsuspecting clients for months.

In recent years payment processors have adopted EMV (Europay, Mastercard and Visa), a credit card payment processing standard that leverages an embedded chip to enable encrypted transactions and facilitate secure storage. This advance in payment security has pushed cybercriminals to find other soft targets - specifically a move away from brick-and-mortar retailers, where customers must have physical possession of the card to online and e-commers merchants where Card Not Present (CNP) transactions take place. Visa Threat Intelligence estimates that over 60% of reported breaches worldwide now involve smaller merchants.

The Cyber Crime in the Payments Sector report from Anomali Labs explores these trends and threats and provides a strategic outlook for the sector and recommendations for protecting organizations.

Download Report

FEATURED RESOURCES

March 27, 2026
Anomali Cyber Watch

When the Bombs Pause, the Hackers Don't: Iran's Cyber War Enters Its Most Dangerous Phase

Read More
March 27, 2026
Public Sector
Anomali Cyber Watch

When Three Crises Converge: Supply Chain Compromise, Municipal Ransomware, and the Erosion of Federal Cyber Support

Read More
March 26, 2026
Anomali Cyber Watch

When Ransomware Meets Statecraft: Iran's Cyber War Enters Its Most Dangerous Phase

Read More
Explore All