216.73.217.22

PrestaShop GTAG Websocket Skimmer

· Published 16/08/2024 17:36 · Modified 16/08/2024 17:50

Export JSON

Essential information

Published
16/08/2024 17:36
Modified
16/08/2024 17:50
Tags
2024-08-16 base64 credit card skimmer php prestashop
Related entities
1 observables, 3 techniques (mitre)

Description

During a recent investigation we uncovered another leveraging a web socket connection to steal credit card details from an infected website. While is not the most popular eCommerce solution for online stores it is still in the top 10 most common ecommerce platforms in use on the web, and clocks in at just above 1% of all websites (over 60,000 in total). Attackers are not discerning with what platforms they attack. If a website is identified as a potential source to steal and sell credit card details on the black market then you can be sure that the website will be a target.

External references