Security Intelligence Expert
Update to the Target breach theory

This past Friday, Webroot posted a blog talking about the recent Target breach with speculation on a possible exploit that could have been used in the attack. Unfortunately, this particular blog did not undergo our blog review process, which is my fault. In my absence, and due to the intense interest in the Target breach, the decision was made to post the blog without technical review. It was quickly brought to our attention that the blog contained an inaccurate assessment of a line of assembly code which in turn invalidated the theory of the blog, now pulled from our website. Webroot apologies for this inaccuracy and to Novell who was singled out as the software containing the vulnerability. Moving forward, any blog released by Webroot which makes claims, even those in speculation, will not be posted without proper review. 

Grayson Milbourne
Director, Security Intelligence