Holiday Cyber Attacks: Tips & Trends
ID: bc57b244-5ce8-5365-b1e9-b5a63e2ffcec
STIX ID: report--bc57b244-5ce8-5365-b1e9-b5a63e2ffcec
Feed Name: Zscaler Security Research Blog
This report documents holiday-themed malicious activity: credential- and payment-stealing phishing pages (Microsoft, USPS), obfuscated JavaScript card-skimmers injected into e-commerce checkout pages that detect debugging and exfiltrate Base64-encoded payment data to attacker domains, and fraudulent shopping sites/Google Forms scams collecting Pix or card details; actors commonly use newly registered domains, mobile-only redirects, and legitimate services to evade detection.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
