cdn-fonts.com skimmer

cdn-fonts.com skimmer
A JavaScript injection in the Magento database table core_config_data loads a skimmer and then exfiltrates the stolen data to the malicious domain cdn-fonts.com.
Read more →

js.staticounter.net skimmer

js.staticounter.net skimmer
A JavaScript based skimmer loaded from an injection in the website’s Magento database table cms_block.
Read more →

Renamed wp-config.php => Sensitive Data Exposure

Renamed wp-config.php => Sensitive Data Exposure
Attackers continue to find easy victims by crawling websites using enumeration techniques and looking for configuration files that have had their file extension modified.
Read more →

Popular Web Shell Variants Contain a Hidden Backdoor

Popular Web Shell Variants Contain a Hidden Backdoor
Variants of popular PHP web shells have been popping up and analysis reveals that they contain a hidden backdoor used to steal the unauthorized access.
Read more →

What Is Anonymous Fox? 🦊

What Is Anonymous Fox? 🦊
There’s a good chance that Anonymous Fox has scanned your website for different vulnerabilities at least once during the last 12-16 months. The majority of hacked WordPress websites I’ve encountered over the last 14 months have evidence of Anonymous Fox activity. How do they do it?
Read more →
Disclaimer: The research posted on this website is for information purposes only. Do not use it for illegal purposes.