Black Friday Alert : 4 Emerging Skimming Attacks
ID: 52b52580-8969-5e1d-948f-c03999f8fcf9
STIX ID: report--52b52580-8969-5e1d-948f-c03999f8fcf9
Feed Name: Zscaler Security Research Blog
Zscaler ThreatLabz observed multiple active Magecart-style web skimming campaigns since mid-2022 targeting Magento and PrestaShop stores in the US, UK, Australia, and Canada; attackers inject (often obfuscated) JavaScript into checkout pages, capture payment and shipping data, and exfiltrate it to attacker-controlled domains that largely evade detection. The report details four distinct groups, their behavior, persistence, detection-evasion techniques, example payloads/URLs, and a comprehensive set of IOCs to help defenders identify and remediate infections.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
