home.social

#magecart — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #magecart, aggregated by home.social.

  1. Magecart Campaign Exploits Stripe to Host Stolen Payment Data

    Meet the sneaky Magecart campaign that's exploiting Stripe to host stolen payment data, cleverly hiding its skimming code inside trusted domains like Google Tag Manager and Stripe's API. By using these legitimate-looking channels, the attack slips past security filters, putting online stores and customers at risk.

    osintsights.com/magecart-campa

    #Magecart #SupplyChain #EcommerceSecurity #GoogleTagManager #Stripe

  2. On January 13th 2026, SilentPush released an article about a #MageCart campaign.
    Curious, I submitted a @ThinkstCanary CreditCard Token. 4 days ago, it triggered for the first time. Dwelltime: 4 months!
    Carddata Testing done via @amazon prime and a US based charity.
    #magecart #ccfraud #webskimming

  3. On January 13th 2026, SilentPush released an article about a #MageCart campaign.
    Curious, I submitted a @ThinkstCanary CreditCard Token. 4 days ago, it triggered for the first time. Dwelltime: 4 months!
    Carddata Testing done via @amazon prime and a US based charity.
    #magecart #ccfraud #webskimming

  4. Silent Push Uncovers New Magecart Network: Disrupting Online Shoppers Worldwide
    #Magecart
    silentpush.com/blog/magecart/

  5. Silent Push Uncovers New Magecart Network: Disrupting Online Shoppers Worldwide
    #Magecart
    silentpush.com/blog/magecart/

  6. Watch out as a new report reveals a widespread Magecart skimmer campaign targeting users of all major credit cards at online checkout.

    Read more: hackread.com/magecart-targets-

    #Magecart #CyberSecurity #OnlineShopping #InfoSec

  7. Watch out as a new report reveals a widespread Magecart skimmer campaign targeting users of all major credit cards at online checkout.

    Read more: hackread.com/magecart-targets-

    #Magecart #CyberSecurity #OnlineShopping #InfoSec

  8. 🧩 3️⃣ Masivo robo de datos de pago de clientes de páginas web con malware Magecart.

    Cibercriminales han estado utilizando el malware Magecart para insertar código malicioso en tiendas online legítimas, de modo que captura datos de tarjetas de crédito y débito justo cuando los clientes compran.

    Este código invisible roba números de tarjeta, fechas de vencimiento y códigos CVV, comprometiendo la seguridad de miles de personas sin que lo noten al comprar.

    🔒 ¿Tus compras en línea son realmente privadas… o alguien más está leyendo lo que escribes?

    #Privacidad #Ciberseguridad #Magecart #PagosOnline

    blog.elhacker.net/2025/12/masi

  9. This #Magecart smart contract got updated recently and is now pointing to keritysuc[.]xyz

    infosec.exchange/@threatcat_ch

  10. While investigating an infected website, we noticed call to BSC testnet contract 0x0967296defa0fd586c9ede5730380e2b059fab95 : testnet.bscscan.com/address/0x

    The contract’s content is clearly malicious and connects over WebSocket to suckerity[.]xyz (behind Cloudflare), not related to #ClearFake, but reminds us #Magecart related injections:

  11. While investigating an infected website, we noticed call to BSC testnet contract 0x0967296defa0fd586c9ede5730380e2b059fab95 : testnet.bscscan.com/address/0x

    The contract’s content is clearly malicious and connects over WebSocket to suckerity[.]xyz (behind Cloudflare), not related to #ClearFake, but reminds us #Magecart related injections:

  12. #etherhiding (hiding malicious code in blockchain based smart contracts) is not only by #ClearFake related actors – but now also for #Magecart 👇

  13. #etherhiding (hiding malicious code in blockchain based smart contracts) is not only by #ClearFake related actors – but now also for #Magecart 👇

  14. 🚨 Cybercriminals are exploiting the Onerror event in image tags to deploy payment skimmers on e-commerce sites using Magento. This stealthy tactic allows malicious code to evade detection while stealing credit card information. As MageCart tactics evolve, online retailers must prioritize robust security measures.

    What steps are you taking to safeguard your online transactions? #Cybersecurity #Privacy #MageCart

    Read more: short.steelefortress.com/t447nz

  15. New campaign targeting sites! Rogue plugin creates fake admin users, injects malicious code to steal credit card info. Stay vigilant—check plugins carefully and remove any suspicious ones immediately!

    thehackernews.com/2023/12/rogu

  16. A new #Magecart card #skimming campaign hijacks the #404 error pages of online retailer's websites, hiding malicious code to steal customers' #creditcard information.
    #Akamai says the campaign focuses on #Magento and #WooCommerce sites, with some victims linked to renowned organizations in the food and #retail sectors.
    bleepingcomputer.com/news/secu

  17. A new #Magecart card #skimming campaign hijacks the #404 error pages of online retailer's websites, hiding malicious code to steal customers' #creditcard information.
    #Akamai says the campaign focuses on #Magento and #WooCommerce sites, with some victims linked to renowned organizations in the food and #retail sectors.
    bleepingcomputer.com/news/secu

  18. "BlackBerry has discovered a new campaign we’ve dubbed “Silent Skimmer,” involving a financially motivated threat actor targeting vulnerable online payment businesses in the APAC and NALA regions. The attacker compromises web servers, using vulnerabilities to gain initial access. The final payload deploys payment scraping mechanisms on compromised websites to extract sensitive financial data from users."

    blogs.blackberry.com/en/2023/0

    #skimming #magecart

  19. Some Magecart IOCs. This is the #Kritec skimmer (malwarebytes.com/blog/threat-i)

    lemodigit[.]online
    macsetech[.]online
    mopedigit[.]shop
    ttewe[.]quest
    yalomob[.]pics

    yalomob[.]pics/mage-cache-loader-v2-4.min.js
    ttewe[.]quest/cleanfeed-loader.js

    #Magecart #iocs #threatintel

  20. Some Magecart IOCs. This is the #Kritec skimmer (malwarebytes.com/blog/threat-i)

    lemodigit[.]online
    macsetech[.]online
    mopedigit[.]shop
    ttewe[.]quest
    yalomob[.]pics

    yalomob[.]pics/mage-cache-loader-v2-4.min.js
    ttewe[.]quest/cleanfeed-loader.js

    #Magecart #iocs #threatintel