Infoblox Threat Intel has discovered a coordinated operation between WordPress hackers and traffic distribution system (TDS) operators linked to the VexTrio network. This was discovered when the VexTrio infrastructure was disrupted, prompting an exploration into the adaptability of cybercrime ecosystems. It was found that malware actors then migrated to another provider, Help TDS, revealing connections within the cybercrime community and also with commercial adtech firms. This collaboration has allowed large-scale malicious campaigns.

This invisible malware hijacks checkout pages using trusted Google URLs, and you’ll never see it coming
Malicious attackers have found a new way of bypassing antivirus programs by infiltrating browsers with malware that is activated during the checkout process on ecommerce