2024 Credit Card Theft Season Arrives
Essential information
- Published
- 07/11/2024 22:48
- Modified
- 08/11/2024 10:22
- Tags
- 2024-11-07 credit card theft ecommerce security holiday shopping season jquery hex skimmer magecart magento r.blob skimmer websocket skimmer wordpress
- Related entities
- 1 intrusion sets (apt), 10 techniques (mitre), 4 malware, 1 others
Description
As the holiday shopping season approaches, eCommerce website owners need to be vigilant against credit card stealing malware, known as 'MageCart'. Attackers focus their efforts in the last quarter to maximize profits from stolen card details. Analysis of recent malware samples reveals sophisticated techniques, including WebSocket skimmers, jquery hex skimmers, and r.blob skimmers. These skimmers use obfuscation methods like XOR encryption and base64 encoding to hide their malicious code. The Smilodon hacking group has evolved its tactics, now using randomized plugin names in WordPress. Website owners are advised to implement security measures such as two-factor authentication, strong passwords, and keeping software up-to-date to protect against these threats.