The PoS vendor says that an unknown attacker gained access to its Retail system, which stores data on companies that purchased Lightspeed PoS software to use with their PoS terminals.
No evidence the attacker exfiltrated any data
Attackers had access to a central database that held information on Lightspeed customers, but not their credit card transactions.
Lightspeed says the attacker accessed the database, but there's no evidence that he stole or misused any information from the servers. The company is now warning users to change their passwords. This is not a "forced" password reset, but only a recommendation, even it would have been better if it was a "forced" password reset.
Potentially compromised data includes Lightspee...
SOCIAL SHARE CARD GENERATOR