Malware.View on attack.mitre.org
PUNCHTRACK is non-persistent point of sale (POS) system malware utilized by FIN8 to scrape payment card data.
| Technique | Procedure example |
|---|---|
| T1005 Data from Local System |
PUNCHTRACK scrapes memory for properly formatted payment card data. |
| T1027 Obfuscated Files or Information |
PUNCHTRACK is loaded and executed by a highly obfuscated launcher. |
| T1074.001 Local Data Staging |
PUNCHTRACK aggregates collected data in a tmp file. |
None recorded.
Data from MITRE ATT&CK® (Enterprise). ATT&CK® is a registered trademark of The MITRE Corporation.