By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
Confluence News - Breaking News, Latest News and VideosConfluence News - Breaking News, Latest News and Videos
Notification Show More
Latest News
Transfer Talk: Liverpool eye Nice’s Kephren Thuram to boost midfield
Sports
AI chipmaker Nvidia joins tech giants to be worth $1trn | Business News
Business
Illegal streaming gang jailed for selling cut-price Premier League subscriptions | UK News
U.K News
The Ayaneo 2S gaming handheld hits crowdfunding, but one factor could make it fail
Tech
IAEA chief outlines five principles to avert nuclear ‘catastrophe’ in Ukraine
Health
Aa
  • Home
  • Politics
  • Business
  • LifeStyle
  • Sports
  • Entertainment
  • Health
  • Tech
Reading: This sneaky credit card stealer hides within payment processors to avoid security scans
Share
Aa
Confluence News - Breaking News, Latest News and VideosConfluence News - Breaking News, Latest News and Videos
  • ES Money
  • U.K News
  • Entertainment
  • Science
  • Technology
  • Insider
Search
  • Home
  • Politics
  • Business
  • Sports
  • Entertainment
  • Health
  • Life Style
  • Tech
Have an existing account? Sign In
Follow US
Confluence News - Breaking News, Latest News and Videos > Blog > Tech > This sneaky credit card stealer hides within payment processors to avoid security scans
Tech

This sneaky credit card stealer hides within payment processors to avoid security scans

Last updated: 2023/03/23 at 9:31 PM
Tech Radar Pro
Share
SHARE

A sneaky new credit card stealer has been discovered hiding in places that are difficult to scan, and thus managing to steal payment (opens in new tab) information without triggering any alarms.

A report from cybersecurity experts Sucuri notes how it stumbled upon the malware when called in to investigate an “unusual infection” at one of its clients’ payment endpoints.

As it turns out, the malware was hiding in the site’s WooCommerce payment gateway module called Authorize.net, which process payment details on checkout. As this module works after the user submits data at checkout, cybersecurity solutions have a harder time detecting potentially malicious code hiding within. 

No vulnerabilities

Usually, threat actors would inject malicious code into the HTML of the store of customer checkout pages. The code would then grab the data being inputted during checkout – giving hackers access to sensitive data such as full credit card numbers, CVV numbers, expiration dates, phone numbers, email addresses, and other important information. 

But today’s cybersecurity solutions can scan the HTML code for malware and thus keep the ecommerce sites safe. 

That’s why this creative malware developer turned to the Authorize.net payment processing system. Apparently, it is currently being used by more than 400,000 merchants all over the world. 

But the WordPress ecommerce plugin WooCommerce, or the Authorize.net payment gateway, are not flawed, and do not carry any vulnerabilities, Sucuri stressed. 

“Overall they are both robust and secure payment platforms that are perfectly safe to use. Instead, this article highlights the importance of maintaining good security posture and keeping environments locked down to prevent tampering from threat actors.” 

“Just like any other piece of software, if malicious actors compromise an environment they can tamper with existing controls,” they concluded.

To remain secure, businesses are advised to leverage file integrity monitoring, keep a close eye on modified files, and urged to “take every possible avenue to keep the attackers at bay.”

Via: BleepingComputer (opens in new tab)



Source link

You Might Also Like

The Ayaneo 2S gaming handheld hits crowdfunding, but one factor could make it fail

Asus reveals a gorgeous new liquid-cooled GPU, and I’m excited

The iPhone and Galaxy S23 Ultra prove money is no object for smartphone buyers

MSI wants to build your next work laptop

Tech Radar Pro March 23, 2023
Share this Article
Facebook Twitter Email Print
What do you think?
Love0
Sad0
Happy0
Sleepy0
Angry0
Dead0
Wink0
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Follow US

Find US on Social Medias
Facebook Like
Twitter Follow
Youtube Subscribe
Telegram Follow

Weekly Newsletter

Subscribe to our newsletter to get our newest articles instantly!

[mc4wp_form]
Popular News
Sports

Heat’s Dedmon gets 1 game for bench outburst www.espn.com – TOP

January 12, 2023
Scientists are reporting a new discovery on Lake Mead’s dry bed CNN.com – RSS Channel – HP Hero
Toothless USA eliminated from World Cup as Netherlands expose talent gap www.espn.com – TOP
‘Decision To Leave’ is the next Korean drama you need in your life
After conflicting statements, police affirm University of Idaho killings were ‘targeted’ CNN.com – RSS Channel – HP Hero
- Advertisement -
Ad imageAd image
Global Coronavirus Cases

Confirmed

0

Death

0

More Information:Covid-19 Statistics

Categories

  • ES Money
  • Insider
  • Science
  • Technology
  • LifeStyle

About US

We influence 20 million users and is the number one business and technology news network on the planet.
Quick Link
  • Economy
  • Politics
  • Life Style
  • Contact Us
Top Categories
  • Business
  • Tech
  • Top
  • Health
  • Entertainment

Subscribe US

Subscribe to our newsletter to get our newest articles instantly!

© confluencenews. All Rights Reserved.

Removed from reading list

Undo
Welcome Back!

Sign in to your account

Lost your password?