Magecart campaign abuses legitimate sites to host web skimmers and act as C2
Security Affairs
JUNE 5, 2023
. “Attackers employ a number of evasion techniques during the campaign, including obfuscating Base64 and masking the attack to resemble popular third-party services, such as Google Analytics or Google Tag Manager.” The stolen data is then appended to the request as query parameters, encoded as a Base64 string.
Let's personalize your content