Magecart Group Goes After Commercial Router Users
#1
Quote:Security researchers have spotted a new tactic being trialed by Magecart hackers: targeting commercial grade routers to skim large volumes of card details.
 
Magecart is the generic name given to a number of groups using JavaScript code to covertly steal card details from users. The tried-and-tested technique used up until now involves injecting this code into a website’s payment page, either directly or through the compromise of a third-party provider.
 
However, according to IBM, Magecart Group 5 (MG5) is testing malicious code which could be injected into legitimate JavaScript loaded by Layer 7 routers.
 
These routers are typically used in venues such as airports, casinos and hotels to serve large numbers of users — theoretically giving the attackers a major haul of card details if they succeed.
 
“We believe that MG5 aims to find and infect web resources loaded by L7 routers with its malicious code, and possibly also inject malicious ads that captive users have to click on to eventually connect to the internet,” IBM said in its report.

Read more here: https://www.infosecurity-magazine.com/ne...oes-after/
[-] The following 1 user says Thank You to silversurfer for this post:
  • harlan4096
Reply


Forum Jump:


Users browsing this thread: 1 Guest(s)
[-]
Welcome
You have to register before you can post on our site.

Username/Email:


Password:





[-]
Recent Posts
K-Lite Codec Pack 19.8.0 / 19.8.0 Update
Changes in 19.8.0: ...harlan4096 — 09:32
Mozilla Firefox Browser 152.0
Mozilla Firefox Br...harlan4096 — 08:00
qBittorrent 5.2.2
qBittorrent 5.2.2:...harlan4096 — 07:37
Opera 132.0.5905.73
Hello! We’ve ro...harlan4096 — 07:36
VirtualBox 7.2.10
VirtualBox 7.2.10 ...harlan4096 — 07:35

[-]
Birthdays
Today's Birthdays
avatar (45)JamesReshy
avatar (47)Francisemefe
avatar (40)leoniDup
avatar (39)Patrizaancem
Upcoming Birthdays
avatar (39)Tedscolo
avatar (46)brakasig
avatar (39)biobdam
avatar (40)storoBox
avatar (48)kinotHeemn
avatar (39)Ceballos1976
avatar (40)efynu

[-]
Online Staff
There are no staff members currently online.

>