Magecart Attacks Grow Rampant in September

Discussion in 'other security issues & news' started by guest, Sep 25, 2018.

  1. guest

    guest Guest

    Gold seller JM Bullion hacked to steal customers' credit cards
    November 1, 2020
    https://www.bleepingcomputer.com/ne...llion-hacked-to-steal-customers-credit-cards/
     
  2. guest

    guest Guest

    Over 2800 e-Shops Running Outdated Magento Software Hit by Credit Card Hackers
    November 11, 2020
    https://thehackernews.com/2020/11/over-2800-e-shops-running-outdated.html
    Magecart Group 12: End of Life Magento Sites Infested with Ants and Cockroaches
     
  3. guest

    guest Guest

    Heads up: A new strain of card-skimming Grelos malware is on the loose
    Magecart variant has changed and you should be alert, warns RiskIQ
    November 18, 2020

    https://www.theregister.com/2020/11/18/magecart_grelos_research/
    RiskIQ: A New Grelos Skimmer Reflects the Depth and Murkiness of the Magecart Ecosystem
     
  4. guest

    guest Guest

    Hanna Andersson, Salesforce ink deal to settle CCPA data breach class action
    November 20, 2020
    https://today.westlaw.com/Document/I715743302b7e11ebb26bd3086ac74fc7/View/FullText.html
     
  5. guest

    guest Guest

    Credit card skimmer fills fake PayPal forms with stolen order info
    November 30, 2020
    https://www.bleepingcomputer.com/ne...lls-fake-paypal-forms-with-stolen-order-info/
     
  6. guest

    guest Guest

    Credit card stealing malware hides in social media sharing icons
    December 3, 2020
    https://www.bleepingcomputer.com/ne...-malware-hides-in-social-media-sharing-icons/
    Sansec: Payment skimmer hides in social media buttons
     
  7. Krusty

    Krusty Registered Member

    Joined:
    Feb 3, 2012
    Posts:
    10,480
    Location:
    Among the gum trees
    How stolen credit cards are sold on the dark web
    https://www.news.com.au/technology/...b/news-story/4361a4eb1a50f5d0ab0ad7edbb7f8906
     
  8. guest

    guest Guest

    Credit card stealing malware bundles backdoor for easy reinstall
    December 8, 2020
    https://www.bleepingcomputer.com/ne...-malware-bundles-backdoor-for-easy-reinstall/
    Sansec: Persistent parasite in EOL Magento 2 stores wakes at Black Friday
     
  9. guest

    guest Guest

    Payment Card Skimmer Group Using Raccoon Info-Stealer to Siphon Off Data
    December 7, 2020
    https://thehackernews.com/2020/12/payment-card-skimmer-group-using.html
    Group-IB: Massive malicious campaign by FakeSecurity JS-sniffer
     
  10. guest

    guest Guest

    Hackers hide web skimmer inside a website's CSS files
    December 9, 2020
    https://www.zdnet.com/article/hackers-hide-web-skimmer-inside-a-websites-css-files/
     
  11. guest

    guest Guest

    Stealthy Magecart malware mistakenly leaks list of hacked stores
    December 18, 2020
    https://www.bleepingcomputer.com/ne...lware-mistakenly-leaks-list-of-hacked-stores/
    Sansec: eCommerce trojan accidentally leaks victims
     
  12. guest

    guest Guest

    'UltraRank' Targets More E-Commerce Sites
    Group Uses JavaScript Sniffer to Steal Payment Card Data
    December 23, 2020

    https://www.inforisktoday.com/ultrarank-targets-more-e-commerce-sites-a-15657
    Group-IB: New attacks by UltraRank group
     
  13. guest

    guest Guest

    Multi-platform card skimmer found on Shopify, BigCommerce stores
    December 28, 2020
    https://www.bleepingcomputer.com/ne...-skimmer-found-on-shopify-bigcommerce-stores/
    Sansec: Multi-platform skimmer hits Shopify, Bigcommerce and others
     
  14. guest

    guest Guest

    Magecart Groups Hide Behind 'Bulletproof' Hosting Service
    Researchers Find Groups Hiding JavaScript Skimmers and Phishing Pages
    January 16, 2021

    https://www.databreachtoday.com/magecart-groups-hide-behind-bulletproof-hosting-service-a-15778
     
  15. hawki

    hawki Registered Member

    Joined:
    Dec 17, 2008
    Posts:
    6,130
    Location:
    DC Metro Area
    "Hackers hide credit card data from compromised stores in JPG file

    Hackers have come up with a sneaky method to steal payment card data from compromised online stores that reduces the suspicious traffic footprint and helps them evade detection.

    Instead of sending the card info to a server they control, hackers hide it in a JPG image and store it on the infected website...

    Researchers at website security company Sucuri found the new exfiltration technique when investigating a compromised online shop running version 2 of the open-source Magento e-commerce platform...

    This allowed the attackers to easily download the information as a JPG file without triggering any alarms in the process as it would look as if a visitor simply downloaded an image from the website..."

    https://www.bleepingcomputer.com/ne...ard-data-from-compromised-stores-in-jpg-file/
     
  16. guest

    guest Guest

    Magecart scammers aim at restaurants' online delivery systems
    May 3, 2021
    https://www.cyberscoop.com/magecart-hack-delivery-pandemic/
     
  17. guest

    guest Guest

    Magecart Goes Server-Side in Latest Tactics Changeup
    May 17, 2021
    https://threatpost.com/magecart-server-side-itactics-changeup/166242/
     
  18. guest

    guest Guest

    Egg free Cake Box suffer data breach exposing credit card numbers
    June 17, 2021
    https://www.bleepingcomputer.com/ne...fer-data-breach-exposing-credit-card-numbers/
     
  19. hawki

    hawki Registered Member

    Joined:
    Dec 17, 2008
    Posts:
    6,130
    Location:
    DC Metro Area
  20. guest

    guest Guest

    ‘Savory Spice’ Breached and Customer Credit Card Details Compromised
    July 26, 2021
    https://www.technadu.com/savory-spice-breached-and-customer-credit-card-details-compromised/291622/
     
  21. guest

    guest Guest

    SCUF Gaming store hacked to steal credit card info of 32,000 customers
    October 22, 2021
    https://www.bleepingcomputer.com/ne...o-steal-credit-card-info-of-32-000-customers/
     
  22. guest

    guest Guest

    Magecart Credit Card Skimmer Avoids VMs to Fly Under the Radar
    November 4, 2021
    https://threatpost.com/magecart-credit-card-skimmer-avoids-vms-to-fly-under-the-radar/175993/
    Malwarebytes: Credit card skimmer evades Virtual Machines
     
  23. guest

    guest Guest

    10,000+ websites and apps are vulnerable to Magecart
    November 15, 2021
    https://www.helpnetsecurity.com/2021/11/15/websites-and-apps-vulnerable-to-magecart/
    Cyberpion: Cyberpion Research Reveals Magecart is Poised to Exploit World’s Biggest Brands
     
  24. guest

    guest Guest

    Ecommerce platforms (cough, Magento) need patching before Black Friday, warns UK's National Cyber Security Centre
    November 22, 2021
    https://www.theregister.com/2021/11/22/ncsc_magento_updates_black_friday_reminder/
    NCSC: Guidance for retailers to prevent websites becoming Black Friday cyber traps
     
  25. guest

    guest Guest

    Hackers plant card-stealing malware on website that sells baron and duke titles
    November 29, 2021
     
    Last edited by a moderator: Dec 6, 2021
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.