A large-scale phishing campaign targets WordPress WooCommerce usersSecurity Affairs·Apr 28, 11:43 UTC · Apr 28, 2025Threat actorCVE-2023-4512460
Hacking campaign targets sites using WordPress WooCommerce Payments PluginSecurity Affairs·Jul 18, 10:48 UTC · Jul 18, 2023Threat actorCVE-2023-2812160
Legacy Stripe API Exploited to Validate Stolen Payment Cards in Web Skimmer CampaignThe Hacker News·Apr 8, 03:53 UTC · Apr 8, 2025Threat actor45
New Magecart campaign hides malicious code in 404 error pageSecurity Affairs·Oct 12, 07:23 UTC · Oct 12, 2023Threat actor45
New Magecart Campaign Alters 404 Error Pages to Steal Shoppers' Credit CardsThe Hacker News·Oct 10, 12:40 UTC · Oct 10, 2023Threat actor45
Magecart campaign abuses legitimate sites to host web skimmers and act as C2Security Affairs·Jun 5, 08:03 UTC · Jun 5, 2023Threat actor45
Threat actors have abused a legitimate feature of the Google Tag Manager service to secretly add and deploy malicious JavaScript code to more than 300 eThe Record·Jan 20, 00:00 UTC · Jan 20, 2023Threat actor45
Magecart Hacks Food Ordering Systems to Steal Payment Data from Over 300 RestaurantsThe Hacker News·Jul 25, 09:13 UTC · Jul 25, 2022Threat actor45
Newly Discovered Magecart Infrastructure Reveals the Scale of Ongoing CampaignThe Hacker News·Jun 22, 10:08 UTC · Jun 22, 2022Threat actor45
Threat actors target WordPress sites using vulnerable File Manager installsSecurity Affairs·Sep 11, 21:01 UTC · Sep 11, 2020Threat actor60
Experts uncovered hacking campaign targeting several WordPress PluginsSecurity Affairs·Aug 25, 06:41 UTC · Aug 25, 2019Threat actor45