Computerworld AI-Driven Hacking Campaign Compromises 600,000 Credit Cards
Article Content
- •Over 600,000 credit card records compromised from two companies.
- •Attackers used open-source AI tools, costing an average of $25 per target.
- •Payment-skimming malware was installed on at least five affected retailers.
A hacking campaign utilizing open-source AI tools has compromised over 600,000 credit card records from two online retailers. Research by Gambit Security indicates that the attackers executed 101 scans across 105 online retailers, with 27 successful breaches occurring over five days. The average cost per attack was approximately $25, with individual costs ranging from $3.13 to $79.31. Payment-skimming malware was found on five of the breached sites, indicating ongoing data theft. The campaign is financially motivated, focusing on volume rather than stealth. Gambit Security has contacted the affected companies, and the attacks have been linked to Chinese-speaking operators. The campaign highlights the increasing sophistication of cybercriminal activities due to AI technologies.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (4)
Following this threat?
Track Hermes and CVE-2026-87902 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Ryuk Ransomware Member Sentenced to Two Years in Prison Karen Vardanyan, a 35-year-old Armenian national, was sentenced to 24 months in federal prison for his involvement in the Ryuk ransomware operation that targeted various organizations in the U.S. and abroad. He was extradited from Ukraine in 2025 and pleaded guilty to conspiracy and computer fraud charges in July…