Go to listing page

Hy-Vee suffers security breach on its Point-of-Sale systems

Hy-Vee suffers security breach on its Point-of-Sale systems
  • The incident has impacted some of its payment processing systems that are focused on transactions at some Hy-Vee fuel pumps and drive-thru coffee shops.
  • Restaurants including Market Grilles, Market Grille Expresses and the Wahlburgers locations were also impacted.

What happened?

Hy-Vee detected unauthorized activity on some of its PoS systems. Upon which, the organization hired leading cybersecurity firms and immediately launched an investigation on the incident.

What is the impact?

  • The incident has impacted some of its payment processing systems that are focused on transactions at some Hy-Vee fuel pumps and drive-thru coffee shops.
  • Restaurants including Market Grilles, Market Grille Expresses and the Wahlburgers locations were also impacted.

However, the payment cards that were swiped at Hy-Vee’s front-end checkout lanes, pharmacies, customer service counters, wine & spirits locations, floral departments, clinics, and all other food service areas were not impacted.

Hy-Vee’s grocery stores, drugstores, and convenience stores were not impacted as these locations have different point-of-sale systems that use point-to-point encryption technology for processing payment card transactions. Furthermore, payments made through Aisles Online were also not impacted.

What actions were taken?

  • Hy-Vee has taken the appropriate steps to stop the unauthorized activity on its payment processing systems.
  • It has notified federal law enforcement authorities and the payment card networks about the unauthorized activity.
  • The organization has also requested its customers to review their payment card statements for any suspicious activity.

“It is always advisable to closely monitor your payment card statements for any unauthorized activity. If you see an unauthorized charge, immediately notify the financial institution that issued the card because cardholders are not generally responsible for unauthorized charges reported in a timely manner,” said Hy-Vee in a security notice.

Cyware Publisher

Publisher

Cyware