Hackers Registered 18,000 Holiday-Themed Domains Targeting ‘Christmas,’ ‘Black Friday,’ and ‘Flash Sale’
ID: e1b1435b-94e5-57d8-b814-0244a60efc72
STIX ID: report--e1b1435b-94e5-57d8-b814-0244a60efc72
Feed Name: cybersecurityNews.com
The report describes an industrialized holiday-season cybercrime campaign: attackers have registered >18,000 holiday-themed domains and use SEO poisoning and look‑alike storefronts to phish shoppers and host payment‑harvesting pages. Researchers report over 1.57M stolen accounts circulating, hundreds of weaponized sites, and active exploitation of multiple critical vulnerabilities (Magento CVE-2025-54236 enabling RCE and skimmers; Oracle EBS CVE-2025-61882 used by ransomware; WooCommerce SQLi and Bagisto SSTI/CSV issues) — with confirmed compromises and automated probing amplifying scale; immediate patching and mitigation are urged.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
