Skip to main content

No man’s land: How a Magecart group is running a web skimming operation from a war zone

  • July 18, 2019
  • 1 reply
  • 2 views

Jasper_The_Rasper
Moderator
Forum|alt.badge.img+54
July 18, 2019 By Threat Intelligence Team

Our Threat Intelligence team has been monitoring the activities of a number of threat actors involved in the theft of credit card data. Often referred to under the Magecart moniker, these groups use simple pieces of JavaScript code (skimmers) typically injected into compromised e-commerce websites to steal data typed by unaware shoppers as they make their purchase.

During the course of an investigation into one campaign, we noticed the threat actors had taken some additional precautions to avoid disruption or takedowns. As such, we decided to have a deeper look into the bulletproof techniques and services offered by their hosting company.

What we found is an ideal breeding ground where criminals can operate with total impunity from law enforcement or actions from the security community.

Full Article.

1 reply

Alienmoon
Popular Voice
Forum|alt.badge.img+7
  • Popular Voice
  • 39 replies
  • July 19, 2019
Jasper_The_Rasper wrote:
July 18, 2019 By Threat Intelligence Team

Our Threat Intelligence team has been monitoring the activities of a number of threat actors involved in the theft of credit card data. Often referred to under the Magecart moniker, these groups use simple pieces of JavaScript code (skimmers) typically injected into compromised e-commerce websites to steal data typed by unaware shoppers as they make their purchase.

During the course of an investigation into one campaign, we noticed the threat actors had taken some additional precautions to avoid disruption or takedowns. As such, we decided to have a deeper look into the bulletproof techniques and services offered by their hosting company.

What we found is an ideal breeding ground where criminals can operate with total impunity from law enforcement or actions from the security community.

Full Article.



I was reading that article yesterday, I never thought of posting it here and I'm happy that I'm a MalwareBytes Premium user.

An Informative Post, not sure why I haven't been reciveing their newletter lately, just checked my account and all the boxes are ticked to receive their Emails.

Thanks for the reminder.

Reply