CMS-based sites under attack: The latest threats and trends

Payment card skimmers are becoming more common in exploit kits affecting WordPress websites and attackers are spending more time customizing them to avoid detection, Sucuri’s latest research report has revealed. “Unlike most compromises we … Continue reading CMS-based sites under attack: The latest threats and trends

Over 500 Magento sites hacked in payment skimmer attack

By Waqas
Sansec researchers have urged website owners to stop using Magento 1 since Adobe has stopped releasing security updates…
This is a post from HackRead.com Read the original post: Over 500 Magento sites hacked in payment skimmer attack
Continue reading Over 500 Magento sites hacked in payment skimmer attack

Small businesses urged to protect their customers from card skimming

With Black Friday and Cyber Monday quickly approaching, the UK National Cyber Security Centre (NCSC) is urging small online shops to protect their customers from card skimming cyber criminals. As part of NCSC’s Active Cyber Defence programme, the organ… Continue reading Small businesses urged to protect their customers from card skimming

Adobe fixes security holes in Magento, most of which are critical

Adobe has released security updates to address vulnerabilities in Magento and Adobe Connect. Magento August 2021 security updates Magento is a popular open-source e-commerce platform. Websites underpinned by Magento are infamously targeted by the (coll… Continue reading Adobe fixes security holes in Magento, most of which are critical

Magento, Visual Studio Code users: You need to patch!

Microsoft and Adobe released out-of-band security updates for Visual Studio Code, the Windows Codecs Library, and Magento. All the updates fix vulnerabilities that could be exploited for remote code execution, but the good news is that none of them are… Continue reading Magento, Visual Studio Code users: You need to patch!

Critical Magento Holes Open Online Shops to Code Execution

Adobe says the two critical flaws (CVE-2020-24407 and CVE-2020-24400) could allow arbitrary code execution as well as read or write access to the database. Continue reading Critical Magento Holes Open Online Shops to Code Execution

JavaScript Used by Phishing Page to Steal Magento Credentials

Digital attackers created a Magento phishing page that used JavaScript to exfiltrate the login credentials of its victims. Sucuri came across a compromised website using the filename “wp-order.php” during an investigation. This phishing page hosted wha… Continue reading JavaScript Used by Phishing Page to Steal Magento Credentials

Magecart hackers launched largest ever attack against Magento stores

By Waqas
Around 1,904 individual online stores were hacked due to the outdated Magento 1 platform. Here’s what happened.
This is a post from HackRead.com Read the original post: Magecart hackers launched largest ever attack against Magento stores
Continue reading Magecart hackers launched largest ever attack against Magento stores

Magecart Attack Impacts More Than 10K Online Shoppers

Close to 2,000 e-commerce sites were infected over the weekend with a payment-card skimmer, maybe the result of a zero-day exploit. Continue reading Magecart Attack Impacts More Than 10K Online Shoppers