Cisco merch shoppers stung in Magecart attack
ID: e88197cf-5bcb-51e0-ab9c-200b476b3c94
STIX ID: report--e88197cf-5bcb-51e0-ab9c-200b476b3c94
Feed Name: The Register (Security)
Threat Score
A Russia-linked Magecart attack injected obfuscated JavaScript into a third-party Cisco merchandise site running unpatched Adobe Magento (CVE-2024-34102), enabling theft of shoppers' payment data; Adobe released a patch on June 11 but many stores remained unpatched and attackers automated exploitation at scale, with the malicious script hosted on the domain rextension.net/za/.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
