Skimmer Targets SagePay Payment Method on Magento 2 Websites
A skimmer that steals payment data from customers that check out using the SagePay payment method.
Magento PHP Skimmer - new validateData
variant
A variant of the
validateData
skimmer. This skimmer is saving payment data to a secondary file after the skimmer is injected into the Magento core file OnepageController.php.
Magento 2 Skimmer Exfiltrates to Telegram Bot
A JavaScript skimmer that exfiltrates stolen payment data to a Telegram bot that is under the attacker’s control.
Magento PHP Skimmer - validateData
A PHP skimmer stealing payment data and user login data is injected into Magento core files OnepageController.php and User.php.
BREAKDOWN: Magento 2 PHP Skimmer - $dataoo
A breakdown of a PHP skimmer found across multiple websites and injected into the Magento core file app/bootstrap.php.