• Menu
  • Skip to main content
  • Skip to primary sidebar

The Cyber Security News

Latest Cyber Security News

Header Right

  • Latest News
  • Vulnerabilities
  • Cloud Services
hackers exploit magento bug to steal payment data from e commerce

Hackers Exploit Magento Bug to Steal Payment Data from E-commerce Websites

You are here: Home / General Cyber Security News / Hackers Exploit Magento Bug to Steal Payment Data from E-commerce Websites
April 6, 2024

Danger actors have been located exploiting a critical flaw in Magento to inject a persistent backdoor into e-commerce web-sites.

The attack leverages CVE-2024-20720 (CVSS rating: 9.1), which has been described by Adobe as a circumstance of “inappropriate neutralization of exclusive aspects” that could pave the way for arbitrary code execution.

It was dealt with by the corporation as section of security updates unveiled on February 13, 2024.

✔ Approved Seller From Our Partners
Mullvad VPN Discount

Protect your privacy by Mullvad VPN. Mullvad VPN is one of the famous brands in the security and privacy world. With Mullvad VPN you will not even be asked for your email address. No log policy, no data from you will be saved. Get your license key now from the official distributor of Mullvad with discount: SerialCart® (Limited Offer).

➤ Get Mullvad VPN with 12% Discount


Sansec reported it found out a “cleverly crafted structure template in the databases” which is currently being utilized to automatically inject destructive code to execute arbitrary commands.

“Attackers incorporate the Magento structure parser with the beberlei/assert deal (mounted by default) to execute technique instructions,” the enterprise mentioned.

Cybersecurity

“Due to the fact the structure block is tied to the checkout cart, this command is executed whenever /checkout/cart is asked for.”

The command in concern is sed, which is applied to insert a code execution backdoor which is then dependable for providing a Stripe payment skimmer to seize and exfiltrate monetary info to another compromised Magento retail store.

The growth comes as the Russian government has billed 6 individuals for employing skimmer malware to steal credit history card and payment details from foreign e-commerce outlets at the very least given that late 2017.

The suspects are Denis Priymachenko, Alexander Aseyev, Alexander Basov, Dmitry Kolpakov, Vladislav Patyuk, and Anton Tolmachev. Recorded Future Information described that the arrests ended up built a yr back, citing court docket paperwork.

“As a outcome, associates of the hacker group illegally took possession of data about virtually 160 thousand payment playing cards of overseas citizens, just after which they bought them through shadow internet web sites,” the Prosecutor General’s Office environment of the Russian Federation explained.

Discovered this short article attention-grabbing? Observe us on Twitter  and LinkedIn to go through more special content we submit.


Some elements of this post are sourced from:
thehackernews.com

Previous Post: «ai as a service providers vulnerable to privesc and cross tenant attacks AI-as-a-Service Providers Vulnerable to PrivEsc and Cross-Tenant Attacks
Next Post: Google Sues App Developers Over Fake Crypto Investment App Scam google sues app developers over fake crypto investment app scam»

Reader Interactions

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Primary Sidebar

Report This Article

Recent Posts

  • Zero-Click Agentic Browser Attack Can Delete Entire Google Drive Using Crafted Emails
  • Critical XXE Bug CVE-2025-66516 (CVSS 10.0) Hits Apache Tika, Requires Urgent Patch
  • Chinese Hackers Have Started Exploiting the Newly Disclosed React2Shell Vulnerability
  • Intellexa Leaks Reveal Zero-Days and Ads-Based Vector for Predator Spyware Delivery
  • “Getting to Yes”: An Anti-Sales Guide for MSPs
  • CISA Reports PRC Hackers Using BRICKSTORM for Long-Term Access in U.S. Systems
  • JPCERT Confirms Active Command Injection Attacks on Array AG Gateways
  • Silver Fox Uses Fake Microsoft Teams Installer to Spread ValleyRAT Malware in China
  • ThreatsDay Bulletin: Wi-Fi Hack, npm Worm, DeFi Theft, Phishing Blasts— and 15 More Stories
  • 5 Threats That Reshaped Web Security This Year [2025]

Copyright © TheCyberSecurity.News, All Rights Reserved.