cognitive cybersecurity intelligence

News and Analysis

Search

Legacy Stripe API Exploited to Validate Stolen Payment Cards in Web Skimmer Campaign

Threat hunters warn of a sophisticated web skimming campaign that uses a deprecated API from payment processor Stripe to steal and validate payment information. Researchers believe the operation is more efficient and harder to detect. The activity, ongoing since August 2024, affects an estimated 49 merchants. The attackers likely exploit vulnerabilities in WooCommerce, WordPress, and PrestaShop, and may also be impersonating other payment forms and adding crypto payment options.

Source: thehackernews.com –

Subscribe to newsletter

Subscribe to HEAL Security Dispatch for the latest healthcare cybersecurity news and analysis.

More Posts