Websites’ 404 pages exploited in new Magecart campaign

New Magecart attacks involving the alteration of default 404 error pages to hide malicious code have been deployed against numerous Magento and WooCommerce sites, including those of food and retail industry entities, The Hacker News reports. Threat actors compromise websites with a loader code that would facilitate the retrieval of the primary payload, which would then collect sensitive data on checkout pages before proceeding with exfiltration activities, according to an Akamai report.

Source: SC Magazine

 


Date:

Categorie(s):

Tag(s):