Target, Dairy Queen, Kmart and now Home Depot have been victimized by malware designed to steal credit card data and other sensitive consumer information. Stolen vendor credentials are used to open tiny doors into a retailers network, giving malicious actors the in they need to target corporate systems and payment gateways. Even the most advanced security systems in the world are hard-pressed to defend against legitimate access. So long as credentials are being stolen, used and not reported until long after the fact, standard security measures won’t be effective.”]
Source: https://securityintelligence.com/news/stolen-vendor-credentials-retails-real-problem/