logo

New Magecart Attack Inject Malicious JavaScript to Skim Payment Data

ID: 0cd11d87-a7fa-5f5e-9f7e-5b968132d0f2

STIX ID: report--0cd11d87-a7fa-5f5e-9f7e-5b968132d0f2

Feed Name: cybersecurityNews.com

Threat Score
70/100

Date Published: 2026-01-21

Date Updated: 2026-04-21

Author: Tushar Subhra Dutta

...
...

A Magecart-style campaign is compromising ecommerce websites by injecting obfuscated JavaScript skimmers that hook into checkout forms to capture credit card and billing data in real time and exfiltrate it to attacker-controlled domains (notably cc-analytics.com and pstatics.com); the report describes the infection mechanism, persistence, and evasive obfuscation techniques posing significant risk to online retailers and their customers.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.