Magecart is a malware family tracked across 7 threat clusters and 12 intelligence report mentions on ThreatCluster. First observed January 21, 2026; most recent activity July 10, 2026.
A critical vulnerability in the Funnel Builder plugin for WooCommerce is being actively exploited, affecting over 40,000 websites. Attackers can inject malicious JavaScript into checkout pages without authentication,…
Cybercriminals are increasingly using legitimate system tools like PowerShell and WMI to deploy malware, creating stealthy threats that evade traditional defenses. The ANY.RUN Q1 2026 Cyber Risk report highlights a…
A large-scale Magecart campaign has compromised 99 Magento e-commerce stores, utilizing an innovative evasion technique involving invisible SVG elements to inject credit card skimmers directly into checkout pages.…
A new Magecart campaign is leveraging Stripe's API to host a JavaScript skimmer that captures credit card information during online transactions. The attack utilizes Google Tag Manager to inject the malicious code into…
At RiskX Singapore 2026, Colin Mahony from Recorded Future and Aditi Sawhney from Mastercard discussed the evolving landscape of payment fraud. They emphasized that fraudulent transactions are the final outcome of a…
eSkimming attacks, also known as Magecart attacks, are increasingly targeting e-commerce websites, compromising payment card data during customer checkouts. These attacks involve injecting JavaScript into websites,…
A new Magecart-style attack is targeting e-commerce websites by injecting malicious JavaScript designed to steal payment information during checkout. The attack uses obfuscated code hosted at cc-analytics[.]com/app.js…