Breaking
January 14, 2025

WordPress users targeted by devious new credit card skimmer malware | usagoldmines.com


  • Sucuri finds malicious code being embedded in WordPress sites
  • The code harvests and exfiltrates payment information from ecommerce websites
  • The researchers are warning WordPress site admins to inspect all custom code

Cybercriminals are once again targeting WordPress websites with credit card skimmers, stealing victim’s sensitive payment information in the process.

This time around, the company sounding the alarm is Sucuri, whose researcher Puja Srivastava recently published a new analysis into the attack, noting criminals are targeting WordPress ecommerce websites, inserting malicious JavaScript code into a database table associated with the content management system (CMS).

This script brings up the credit card skimmer just as the victim is about to enter the payment information.

Inspecting custom HTML widgets

“The malware activates specifically on checkout pages, either by hijacking existing payment fields or injecting a fake credit card form,” the researcher said.

The unnamed skimmer was built to steal all of the payment information necessary for internet transactions: credit card numbers, expiration dates, CVV numbers, and billing information.

Cybercriminals usually use stolen credit card information to fund malicious ad campaigns on social media platforms, purchase malware or malware-as-a-service (MaaS), or buy gift cards since these are difficult to trace.

Sucuri added the skimmer can also grab data entered on legitimate payment screens in real-time, thus maximizing compatibility.

All of the acquired information is encoded in Base64 and combined with AES-CBC encryption, to blend in with the regular traffic. After that, it is exfiltrated to a server under the attacker’s control (either “valhafather[.]xyz” or “fqbe23[.]xyz”).

To remove the malware, Sucuri suggests inspecting all custom HTML widgets. That can be done by logging into the WordPress admin panel, navigating to wp-admin > Appearance > Widgets, and checking all Custom HTML block widgets for suspicious or unfamiliar tags. The researchers also suggested mitigation steps, which include regular updates, admin account management, file integrity monitoring, and running a web application firewall.

Skimmers seem to be rising in popularity again. Less than three weeks ago, the European Space Agency was found hosting this type of malicious code, which was stealing payment data, including sensitive credit card information, from countless victims.

Via The Hacker News

You might also like

​ 

This articles is written by : Nermeen Nabil Khear Abdelmalak

All rights reserved to : USAGOLDMIES . www.usagoldmines.com

You can Enjoy surfing our website categories and read more content in many fields you may like .

Why USAGoldMines ?

USAGoldMines is a comprehensive website offering the latest in financial, crypto, and technical news. With specialized sections for each category, it provides readers with up-to-date market insights, investment trends, and technological advancements, making it a valuable resource for investors and enthusiasts in the fast-paced financial world.

Recent:

Nvidia’s tiny $3k AI mini PC is a glimpse of what’s next for Windows PCs | usagoldmines.com
Lenovo ThinkPad X1 Carbon Gen 13 Aura Edition review: Lags behind the competition | usagoldmines.co...
First iPhone Chips Made in America Soon to Start Mass Production Hartley Charlton | usagoldmines.com
Intel is taking the budget GPU market by storm - leaked Arc B570 benchmark shows solid performance f...
Windows 10 update installation failures aren’t rare – but an update that won’t stop installing itsel...
Nvidia says latest US restrictions on China AI chips will ‘stifle competition’ benedict.collins@futu...
Nissan electrifies its iconic R32 Skyline to preserve its charm – and show that nothing thrills like...
PC sales are rising once again, and it's probably no surprise who is leading the way | usagoldmines...
Samsung Galaxy phones get big Trade-In boost – you’ll soon be able to sell without buying a new one ...
Nvidia’s tiny $3k AI mini PC is a glimpse of what’s next for Windows PCs | usagoldmines.com
Samsung teases that the Galaxy S25 could be a ‘true AI companion’ | usagoldmines.com
I'd like to be, under the sea, with Ringo Starr's Studer 80 recorder, in the shade | usagoldmines.c...
This new gadget could transform the way you consume food, as long as you don't mind eating on camera...
You could start chatting directly with Gemini Live about a YouTube video you're watching very soon e...
Adobe's latest Firefly AI tool will let you edit thousands of images in one go | usagoldmines.com
Assassins Creed Shadows isn't even out yet, but it seems the game's first DLC may have already leake...
Own an LG TV released from 2021 onwards? Here's when (and if) you can expect your smart TV platform ...
Not just heat death: Here are five ways the Universe could end Paul Sutter | usagoldmines.com
SpaceX is superb at reusing boosters, but how about building upper stages? Stephen Clark | usagoldmi...
Nominet says it was hit by cyberattack following recent Ivanti VPN security issue | usagoldmines.co...
Nvidia RTX 5050 was missing in action at CES 2025 – but the budget GPU might just have been spotted ...
Daredevil: Born Again's first trailer 'is coming', Marvel star says, but it's been delayed for a ver...
The Blood of Dawnwalker is a new single-player dark fantasy RPG from The Witcher 3: Wild Hunt's form...
Businesses are slowly waking up to the environmental effects of Gen AI | usagoldmines.com
The return of a 'legendary' Japanese franchise could be the Xbox Developer Direct mystery title | u...
New HomePod minis will almost certainly land this year –and Siri might even get good | usagoldmines...
Leaked Nothing Phone 3 memo teases a flagship phone packed with AI | usagoldmines.com
UK Government launches ransomware protection proposals | usagoldmines.com
Leak suggests an Oblivion remake is set to launch soon dash.wood@futurenet.com (Dashiell Wood) | usa...
RCS vs SMS: What is the difference between the two for businesses? | usagoldmines.com
The Samsung Galaxy S25 might ship earlier than expected, but only if you pre-order | usagoldmines.c...
Prioritize your mental well-being this year with tools you’ll actually use | usagoldmines.com
Five pillars for practical GenAI implementation | usagoldmines.com
Microsoft claims its servers were illegally accessed to make unsafe AI content luke.hughes@futurenet...
After quick turnaround, New Glenn to make another launch attempt early Tuesday Eric Berger | usagold...
This cute convertible laptop looks like a mini PC with a touchscreen, a battery and a keyboard udinm...
NYT Connections today — my hints and answers for Tuesday, January 14 (game #583) | usagoldmines.com
NYT Strands today — my hints, answers and spangram for Tuesday, January 14 (game #317) | usagoldmin...
Quordle today – my hints and answers for Tuesday, January 14 (game #1086) | usagoldmines.com
Biofilms, unwashed hands: FDA found violations at McDonald’s ex-onion supplier Beth Mole | usagoldmi...
Pelotons Are up to $350 Off Right Now Daniel Oropeza | usagoldmines.com
My Seven Favorite Cleaning Accounts to Follow on Instagram Lindsey Ellefson | usagoldmines.com
Apple Stops Signing iOS 18.2, Preventing Downgrading Juli Clover | usagoldmines.com
Best PC computer deals: Top picks from desktops to all-in-ones | usagoldmines.com
How to Use TikTok in the US, Even When It's Banned Jake Peterson | usagoldmines.com
The Vvolt Centauri II Just Became My New Favorite E-Bike Stephen Johnson | usagoldmines.com
Data Broker Hack Exposes Location Info From Millions of iPhone Users Juli Clover | usagoldmines.com
The best cheap GoPro deals and sales for January 2025 | usagoldmines.com
WhatsApp looks set to get an AI makeover soon – here's what could be coming erichs211@gmail.com (Eri...
The Best Way to Clean a Keyboard (If You Don’t Have Compressed Air) Lindsey Ellefson | usagoldmines....
Google Drive now synchronizes files faster and uses less data to do it | usagoldmines.com
I Use This Tracker to Actually Get My Kids to Brush Their Teeth Every Day Anna Lee Beyer | usagoldmi...
The Beats Powerbeats Pro Are Just $100 Right Now Daniel Oropeza | usagoldmines.com
iPhone Driver's License Support Coming to Illinois Juli Clover | usagoldmines.com
Zuckerberg asks Trump to stop US companies from having to pay EU fines benedict.collins@futurenet.co...
Top cannabis brand Stiiizy says hackers got access to its systems | usagoldmines.com
How GM’s Super Cruise went from limo driving to lane changes and towing Jonathan M. Gitlin | usagold...
2002’s Neverwinter Nights gets a patch in 2025 from “unpaid software engineers” Kevin Purdy | usagol...
Mastodon becomes nonprofit to make sure it’s never ruined by billionaire CEO Ashley Belanger | usago...
Best of CES 2025: The PC and home tech that blew us away | usagoldmines.com
OnePlus 13 Gets a Big First Update Kellen | usagoldmines.com
How to Protect Your Kids From Identity Theft Jeff Somers | usagoldmines.com
The Best Way to Clean a Microwave Lindsey Ellefson | usagoldmines.com
Finally, another Thunderbolt 5 SSD has landed, and boy is it fast! Seagate's LaCie Rugged SSD Pro5 i...
Report: After many leaks, Switch 2 announcement could come “this week” Andrew Cunningham | usagoldmi...
Nope, this skull is not Cleopatra’s half-sister Jennifer Ouellette | usagoldmines.com
New York starts enforcing $15 broadband law that ISPs tried to kill Jon Brodkin | usagoldmines.com
CES sneakily became a great gaming show amid the AI hype | usagoldmines.com
Get 21% off this Ryzen 7 mini PC with triple 4K@120Hz support | usagoldmines.com
Anker’s awesome 25K power bank launched at CES 2025 is already 10% off | usagoldmines.com
Best VPN services 2025: Top picks for speed, price, privacy, and more | usagoldmines.com
Samsung’s fast, compact USB-C flash drive is only $18 right now | usagoldmines.com
Lenovo Legion Go S hands-on: SteamOS and Windows flavors | usagoldmines.com
All the Pixel 9 and Pixel 9 Pro Phones are $150 Off Again, Pixel 9 Pro Fold is $300 Off Kellen | usa...
These Nine States Will Have Lower Income Taxes This Year Meredith Dietz | usagoldmines.com
My Favorite Amazon Deal of the Day: The iPad Mini A17 Pro Daniel Oropeza | usagoldmines.com
What You Get With Apple One, and How Much It'll Cost You Jason Keil | usagoldmines.com
Sam Altman predicts artificial superintelligence (AGI) will happen this year | usagoldmines.com
Sonos CEO behind disastrous app exits with $1.9 million severance Scharon Harding | usagoldmines.com
Samsung’s fast, compact USB-C flash drive is only $18 right now | usagoldmines.com
Samsung Galaxy Flip 4 and 5, Galaxy Fold 4 and 5 All See January Update Kellen | usagoldmines.com
Change These iPhone Settings to Stop Apple From Collecting (Some of) Your Data Pranay Parab | usagol...
This Is the Soup I Make Whenever I Have Leftover Veggies Allie Chanthorn Reinmann | usagoldmines.com
Review: BenQ's Affordable MA270U 4K Monitor Is Made for MacBooks Tim Hardwick | usagoldmines.com
More alleged Chinese intrusions into the US Treasury revealed | usagoldmines.com
Microsoft's own baddie team 'attacked' more than 100 generative AI products: Here's what they learnt...
Apple users facing new security risks after critical USB component hacked | usagoldmines.com
There's one handheld gaming PC that went under the radar at CES 2025 - and it's got a secret weapon ...
How to watch Diddy: The Making of a Bad Boy online from anywhere – stream Sean Combs documentary | ...
The Nintendo Switch 2 reveal could be imminent dash.wood@futurenet.com (Dashiell Wood) | usagoldmine...
VLC celebrates 6 billion downloads with new AI subtitles feature | usagoldmines.com
It’s time to start docking phones again, DisplayLink says | usagoldmines.com
This delightful old-school keyboard has a built-in word counter and timer | usagoldmines.com
Sonos CEO is out following disastrous app revamp that enraged customers | usagoldmines.com
LG says 22% of gaming monitors are OLED displays | usagoldmines.com
Windows 10 PCs will be forced to install the new Outlook app in February | usagoldmines.com
NFL Sunday Ticket: How to cancel auto-renew before you forget | usagoldmines.com
Pastor charged with fraud after shilling crypto to congregation | usagoldmines.com
Samsung Galaxy Ring gets two new sizes, availability in 15 new countries, and a big sleep upgrade to...
Telefónica says it was hit by systems breach, internal data leaked online | usagoldmines.com

Leave a Reply