Legacy Stripe API Exploited to Validate Stolen Payment Cards in Web Skimmer Campaign

Threat hunters are alerting users to a clever online skimmer effort that uses Stripe’s old application programming interface (API) to verify stolen payment details before they are exfiltrated.

According to a report by Jscrambler researchers Pedro Fortuna, David Alves, and Pedro Marrucho, this strategy guarantees that only legitimate card information is transmitted to the attackers, increasing the operation’s efficiency and maybe making it more difficult to detect.

Up to 49 retailers are thought to have been impacted by the campaign thus far. The malicious script injections have been removed from fifteen of the infected websites. According to the assessment, the action has been going on since at least August 20, 2024.

The campaign’s usage of the api.stripe[.]com/v1/sources API, which enables apps to accept several payment methods, was initially discovered by security firm Source Defense read more about Legacy Stripe API Exploited to Validate Stolen Payment Cards in Web Skimmer Campaign.

Get up to date on the latest cybersecurity news and enhance your knowledge of cybersecurity with our thorough coverage of the dangers, breaches, and solutions.

Leave a Reply

Your email address will not be published. Required fields are marked *