Cybersecurity researchers have detected a large-scale threat campaign compromising websites via malicious JavaScript injections. Using a technique called JSFireTruck, the campaign has reportedly infected over 269,552 web pages in a month. The code checks the website referrer, and if it is a search engine, the code redirects users to dangerous URLs. Additionally, Gen Digital has unveiled a Traffic Distribution Service, HelloTDS, that can redirect visitors to fake pages, scams, and malware.

This invisible malware hijacks checkout pages using trusted Google URLs, and you’ll never see it coming
Malicious attackers have found a new way of bypassing antivirus programs by infiltrating browsers with malware that is activated during the checkout process on ecommerce