<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>magecart &#8211; EFR Technology Group</title>
	<atom:link href="https://www.efrtechgroup.com/category/magecart/feed/" rel="self" type="application/rss+xml" />
	<link>https://www.efrtechgroup.com</link>
	<description>We maintain technology so you don't have to!</description>
	<lastBuildDate>Fri, 26 Jun 2020 16:35:02 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.9.4</generator>

<image>
	<url>https://www.efrtechgroup.com/wp-content/uploads/2019/02/cropped-EFRTG-color-2-32x32.jpg</url>
	<title>magecart &#8211; EFR Technology Group</title>
	<link>https://www.efrtechgroup.com</link>
	<width>32</width>
	<height>32</height>
</image> 
	<item>
		<title>Hackers are hiding virtual credit card skimmers in image file metadata</title>
		<link>https://www.efrtechgroup.com/tech/hackers-are-hiding-virtual-credit-card-skimmers-in-image-file-metadata/</link>
		
		<dc:creator><![CDATA[Randall]]></dc:creator>
		<pubDate>Fri, 26 Jun 2020 16:35:02 +0000</pubDate>
				<category><![CDATA[exif]]></category>
		<category><![CDATA[gear]]></category>
		<category><![CDATA[javascript]]></category>
		<category><![CDATA[magecart]]></category>
		<category><![CDATA[malware]]></category>
		<category><![CDATA[malwarebytes]]></category>
		<category><![CDATA[metadata]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Privacy]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Tech]]></category>
		<category><![CDATA[woocommerce]]></category>
		<category><![CDATA[wordpress]]></category>
		<guid isPermaLink="false">https://www.efrtechgroup.com/hackers-are-hiding-virtual-credit-card-skimmers-in-image-file-metadata/</guid>

					<description><![CDATA[[ad_1] Lots of people know to check ATMs and gas station credit card readers for skimmers, but it’s harder to tell when virtual ones are hidden them in websites’ payment portals. According to research from Malwarebytes, hackers put Magecart JavaScript code into the EXIF metadata of image files, which is then loaded and executed by [&#8230;]]]></description>
										<content:encoded><![CDATA[<p> [ad_1]<br />
</p>
<div>
<p>Lots of people know to check ATMs and gas station credit card readers for skimmers, but it’s harder to tell when virtual ones are hidden them in websites’ payment portals. According to research from <a href="https://blog.malwarebytes.com/threat-analysis/2020/06/web-skimmer-hides-within-exif-metadata-exfiltrates-credit-cards-via-image-files/" target="_blank" rel="noopener noreferrer">Malwarebytes</a>, hackers put <a href="https://www.engadget.com/2019-05-06-card-skimming-hack-targets-campus-stores.html">Magecart</a> JavaScript code into the EXIF metadata of image files, which is then loaded and executed by compromised stores. Hiding <a href="https://www.engadget.com/facebook-fbi-hacking-tool-targeted-child-abuser-171753372.html">malicious code</a> inside of images is nothing new, but it’s the first time security researchers have seen them used to obscure credit card skimmers.</p>
<p>A recent trend among hackers has been to hide malicious code in favicons &#8212; those icons you see in the corner of a browser tab. Malwarebytes says that it first assumed the exploit it was researching was a variation on this type of attack, but further analysis revealed it was something else entirely. The company found that the malicious code was loaded via the WooCommerce plugin for WordPress. This is an increasingly popular target among hackers, thanks to its wide market share. When loaded, it grabs payment information, such as the customer’s name, address and credit card details.</p>
</p></div>
<p>[ad_2]<br />
<br /><a href="https://www.engadget.com/magecart-exif-credit-card-skimmer-163502259.html">Source link </a></p>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>Macy&#8217;s says its website leaked credit card info to hackers for a week</title>
		<link>https://www.efrtechgroup.com/tech/macys-says-its-website-leaked-credit-card-info-to-hackers-for-a-week/</link>
		
		<dc:creator><![CDATA[Randall]]></dc:creator>
		<pubDate>Wed, 20 Nov 2019 00:25:00 +0000</pubDate>
				<category><![CDATA[breach]]></category>
		<category><![CDATA[card skimming]]></category>
		<category><![CDATA[data breach]]></category>
		<category><![CDATA[e-commerce]]></category>
		<category><![CDATA[gear]]></category>
		<category><![CDATA[Hack]]></category>
		<category><![CDATA[Internet]]></category>
		<category><![CDATA[macy's]]></category>
		<category><![CDATA[magecart]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[shopping]]></category>
		<category><![CDATA[Tech]]></category>
		<guid isPermaLink="false">https://www.efrtechgroup.com/macys-says-its-website-leaked-credit-card-info-to-hackers-for-a-week/</guid>

					<description><![CDATA[[ad_1] The technique, known as Magecart, has grown in popularity among hackers for its mix of relative simplicity and effectiveness. They don&#8217;t have to do much more than insert rogue scripts (pointed to remote command-and-control servers) and wait for people to go shopping. From there, they can use the info to make fraudulent purchases, make [&#8230;]]]></description>
										<content:encoded><![CDATA[<p> [ad_1]<br />
</p>
<div>
<p>The technique, known as Magecart, has grown in popularity among hackers for its mix of relative simplicity and effectiveness.  They don&#8217;t have to do much more than insert rogue scripts (pointed to remote command-and-control servers) and wait for people to go shopping.  From there, they can use the info to make fraudulent purchases, make clone cards and sell the data on the black market.</p>
<p>Don&#8217;t expect these kinds of attacks to subside any time soon.  They&#8217;ve been used against numerous major brands, including <a href="https://www.engadget.com/2018/09/06/british-airways-website-hack-exposed-customer-financial-data/">British Airways</a>, Newegg and Ticketmaster.  Until online stores are airtight against techniques like Magecart, they&#8217;ll be tempting targets.</p>
</p></div>
<p>[ad_2]<br />
<br /><a href="https://www.engadget.com/2019/11/19/macys-card-skimming-hack/">Source link </a></p>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>Card skimming hack targets 201 campus stores in North America</title>
		<link>https://www.efrtechgroup.com/tech/card-skimming-hack-targets-201-campus-stores-in-north-america/</link>
		
		<dc:creator><![CDATA[Randall]]></dc:creator>
		<pubDate>Mon, 06 May 2019 06:11:00 +0000</pubDate>
				<category><![CDATA[breach]]></category>
		<category><![CDATA[data breach]]></category>
		<category><![CDATA[gear]]></category>
		<category><![CDATA[Hack]]></category>
		<category><![CDATA[hacking]]></category>
		<category><![CDATA[Internet]]></category>
		<category><![CDATA[javascript]]></category>
		<category><![CDATA[magecart]]></category>
		<category><![CDATA[mirrorthief]]></category>
		<category><![CDATA[prismrbs]]></category>
		<category><![CDATA[prismweb]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[skimming]]></category>
		<category><![CDATA[Tech]]></category>
		<category><![CDATA[theft]]></category>
		<guid isPermaLink="false">https://www.efrtechgroup.com/card-skimming-hack-targets-201-campus-stores-in-north-america/</guid>

					<description><![CDATA[[ad_1] The perpetrators appear to be unique among Magecart-using groups at this stage. They not only don&#8217;t share much in common with other groups, they crafted their attack specifically with PrismRBS&#8217; software in mind. There might even be a custom receiver system instead of a ready-made skimming kit popular among cybercriminals. PrismRBS said it had [&#8230;]]]></description>
										<content:encoded><![CDATA[<p> [ad_1]<br />
</p>
<div>
<p>The perpetrators appear to be unique among Magecart-using groups at this stage.  They not only don&#8217;t share much in common with other groups, they crafted their attack specifically with PrismRBS&#8217; software in mind.  There might even be a custom receiver system instead of a ready-made skimming kit popular among cybercriminals.</p>
<p>PrismRBS said it had learned of the breach on April 26th and &#8220;immediately&#8221; reacted, including efforts to stop the attack, launch an investigation and contact customers as well as law enforcement and payment card providers.  It&#8217;s promising to bolster the security of its platform and conduct a &#8220;comprehensive end-to-end audit.&#8221;</p>
<p>There are tools that can block the scripts and the internet domains used for remote data theft.  The challenge, as is often the case, is getting companies to adopt.  Even if their payment software is up to date, they might not be aware of the possibility for card skimming hacks or have security tools to thwart them.  And when the attacks can be highly effective, there&#8217;s plenty of incentive for crooks to find these soft targets.</p>
</p></div>
<p>[ad_2]<br />
<br /><a href="https://www.engadget.com/2019/05/06/card-skimming-hack-targets-campus-stores/">Source link </a></p>
]]></content:encoded>
					
		
		
			</item>
	</channel>
</rss>
