logo

Cisco merch shoppers stung in Magecart attack

ID: e88197cf-5bcb-51e0-ab9c-200b476b3c94

STIX ID: report--e88197cf-5bcb-51e0-ab9c-200b476b3c94

Feed Name: The Register (Security)

Threat Score
75/100

Date Published: 2024-09-06

Date Updated: 2026-04-26

Author: Jessica Lyons

...
...

A Russia-linked Magecart attack injected obfuscated JavaScript into a third-party Cisco merchandise site running unpatched Adobe Magento (CVE-2024-34102), enabling theft of shoppers' payment data; Adobe released a patch on June 11 but many stores remained unpatched and attackers automated exploitation at scale, with the malicious script hosted on the domain rextension.net/za/.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.