Close Menu
    Facebook LinkedIn YouTube WhatsApp X (Twitter) Pinterest
    Trending
    • Supermassive black holes may create millions of new planets
    • Cheque in: 3 startups ended May by raising $15.5 million
    • Universal Audio Volt 876 USB Audio Interface Review: Pro-Level Polish
    • New York City-based Mecka AI, which trains robots with human data sourced from body sensors and iPhones, raised $60M, including a $25M Series A (Ben Weiss/Fortune)
    • Is Instagram Down? What to Know
    • It’s the Lessons We Learned Along the Way. Or, Is It?
    • The forever chemicals impacting your health
    • WiseTech CEO threatened amid job cuts; founder Richard White calls in police
    Facebook LinkedIn WhatsApp
    Times FeaturedTimes Featured
    Monday, June 1
    • Home
    • Founders
    • Startups
    • Technology
    • Profiles
    • Entrepreneurs
    • Leaders
    • Students
    • VC Funds
    • More
      • AI
      • Robotics
      • Industries
      • Global
    Times FeaturedTimes Featured
    Home»News»Hundreds of e-commerce sites hacked in supply-chain attack
    News

    Hundreds of e-commerce sites hacked in supply-chain attack

    Editor Times FeaturedBy Editor Times FeaturedMay 20, 2025No Comments2 Mins Read
    Facebook Twitter Pinterest Telegram LinkedIn Tumblr WhatsApp Email
    Share
    Facebook Twitter LinkedIn Pinterest Telegram Email WhatsApp Copy Link

    Lots of of e-commerce websites, at the least one owned by a big multinational firm, had been backdoored by malware that executes malicious code contained in the browsers of tourists, the place it will probably steal cost card info and different delicate knowledge, safety researchers mentioned Monday.

    The infections are the results of a supply-chain assault that compromised at the least three software program suppliers with malware that remained dormant for six years and have become energetic solely in the previous couple of weeks. A minimum of 500 e-commerce websites that depend on the backdoored software program had been contaminated, and it’s attainable that the true quantity is double that, researchers from safety agency Sansec said.

    Among the many compromised clients was a $40 billion multinational firm, which Sansec didn’t identify. In an electronic mail Monday, a Sansec consultant mentioned that “world remediation [on the infected customers] stays restricted.”

    Code execution on guests’ machines

    The provision chain assault poses a major danger to the hundreds or thousands and thousands of individuals visiting the contaminated websites, as a result of it permits attackers to execute code of their selection on ecommerce web site servers. From there, the servers run info-stealing code on customer machines.

    “Because the backdoor permits importing and executing arbitrary PHP code, the attackers have full distant code execution (RCE) and might do basically something they need,” the consultant wrote. “In almost all Adobe Commerce/Magento breaches we observe, the backdoor is then used to inject skimming software program that runs within the consumer’s browser and steals cost info (Magecart).”

    The three software program suppliers recognized by Sansec had been Tigren, Magesolution (MGS), and Meetanshi. All three provide software program that’s primarily based on Magento, an open supply e-commerce platform utilized by hundreds of on-line shops. A software program model offered by a fourth supplier named Weltpixel has been contaminated with related code on a few of its clients’ shops, however Sansec to date has been unable to substantiate whether or not it was the shops or Weltpixel that had been hacked. Adobe has owned Megento since 2018.



    Source link

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Editor Times Featured
    • Website

    Related Posts

    New York City-based Mecka AI, which trains robots with human data sourced from body sensors and iPhones, raised $60M, including a $25M Series A (Ben Weiss/Fortune)

    June 1, 2026

    SpaceX will reserve up to 5% of its Class A shares for select employees and executives’ friends and family; 60%+ of shares have an extended lock-up (Charles Capel/Bloomberg)

    June 1, 2026

    Netherlands-based Invisix, which is developing advanced chipmaking measurement tools, raised a €20M seed, with the participation of a “tier-one” chipmaker (Tamara Djurickovic/Tech.eu)

    June 1, 2026

    Nvidia unveils DGX Station, a desktop Windows PC powered by its GB300 Grace Blackwell chip with up to 748 GB of memory, capable of running 1T-parameter models (Mike Wheatley/SiliconANGLE)

    June 1, 2026

    Intel teases its Xeon 7 Diamond Rapids CPUs, built on 18A-P node, with PCIe 6.0, and 50% more cores and twice the memory bandwidth vs. Xeon 6, launching in 2027 (Jake Roach/Tom’s Hardware)

    June 1, 2026

    Dell introduces the $699+ Dell XPS 13, starting with 8GB of RAM, a six-core Intel Core 5 320 chip, and a 13.4-inch touchscreen, rivaling the MacBook Neo (Antonio G. Di Benedetto/The Verge)

    June 1, 2026

    Comments are closed.

    Editors Picks

    Supermassive black holes may create millions of new planets

    June 1, 2026

    Cheque in: 3 startups ended May by raising $15.5 million

    June 1, 2026

    Universal Audio Volt 876 USB Audio Interface Review: Pro-Level Polish

    June 1, 2026

    New York City-based Mecka AI, which trains robots with human data sourced from body sensors and iPhones, raised $60M, including a $25M Series A (Ben Weiss/Fortune)

    June 1, 2026
    Categories
    • Founders
    • Startups
    • Technology
    • Profiles
    • Entrepreneurs
    • Leaders
    • Students
    • VC Funds
    About Us
    About Us

    Welcome to Times Featured, an AI-driven entrepreneurship growth engine that is transforming the future of work, bridging the digital divide and encouraging younger community inclusion in the 4th Industrial Revolution, and nurturing new market leaders.

    Empowering the growth of profiles, leaders, entrepreneurs businesses, and startups on international landscape.

    Asia-Middle East-Europe-North America-Australia-Africa

    Facebook LinkedIn WhatsApp
    Featured Picks

    Four Wheel Campers Hawk+ self-contained off-grid pickup truck camper

    June 3, 2025

    Acer unveils compact projector with big-screen capabilities

    May 20, 2025

    Liquid Wind advances Europe’s eFuel ambitions with €3.6 million to advance Swedish eMethanol facility

    October 13, 2025
    Categories
    • Founders
    • Startups
    • Technology
    • Profiles
    • Entrepreneurs
    • Leaders
    • Students
    • VC Funds
    Copyright © 2024 Timesfeatured.com IP Limited. All Rights.
    • Privacy Policy
    • Disclaimer
    • Terms and Conditions
    • About us
    • Contact us

    Type above and press Enter to search. Press Esc to cancel.