CyberSecurity updates
2025-02-09 06:19:55 Pacfic

Double-Entry Web Skimming Campaign Targets Multiple E-commerce Websites - 4d
Double-Entry Web Skimming Campaign Targets Multiple E-commerce Websites

Multiple websites, including Casio UK, were targeted in a web skimming attack using a double-entry technique. This involved an unobfuscated loader that triggered a secondary skimmer, exfiltrating sensitive customer information like credit card details, billing addresses, and contact information. The attack highlighted the vulnerability of e-commerce platforms and the sophistication of modern cybercriminal tactics. The attack on Casio UK alone lasted for a period of 10 days, from January 14th to January 24th. The malicious actor used XOR-based string masking and custom encoding to conceal their activity.