logo

Hackers Compromised 7,500+ Magento Websites to Upload Hidden Malicious Files and Steal Data

ID: 173b1c45-e563-5eec-b8b3-94dba32c6e88

STIX ID: report--173b1c45-e563-5eec-b8b3-94dba32c6e88

Feed Name: cybersecurityNews.com

Threat Score
75/100

Date Published: 2026-03-20

Date Updated: 2026-05-05

Author: Tushar Subhra Dutta

...
...

A widespread campaign beginning in late February 2026 has compromised over 7,500 Magento sites (across ~15,000 hostnames) by exploiting an unauthenticated file upload flaw, resulting in hidden malicious files and public defacements affecting commercial brands, government services, universities, and non-profits; Netcraft validated the upload on a test Magento instance and advises immediate application of Adobe/ Magento fixes, review of upload endpoints, and monitoring for unauthorized files.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.