Magento JS Skimmer Hidden in CSS Request to Malicious Domain

Active Magento JS skimmer hides within CSS request to malicious domain: amastybootstrap[.]store/css/font-awesome.css
— Luke Leal (@rootprivilege) August 18, 2020
The code that loads the skimmer is easy to miss if you just look at the curl output in terminal!#skimmer #magento #malware #infosec #carding #cybercrime pic.twitter.com/tqJltm5aTX
More Research