WordPress Plugin Exploited to Steal Credit Card Data from E-commerce Sites
ID: 4231f401-7f7f-51df-b808-c3b69087be06
STIX ID: report--4231f401-7f7f-51df-b808-c3b69087be06
Feed Name: The Hacker News
Threat Score
Unknown threat actors abused the Dessky Snippets WordPress plugin to plant server-side PHP skimming code on WooCommerce sites, adding fake billing fields (with autocomplete disabled) to capture cardholder data and exfiltrate it to https://2of.cc/wp-content/. Sucuri observed the campaign on May 11, 2024; site owners are advised to update plugins, use strong credentials, and audit for unauthorized changes.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
