Tag: Magento

Threat Actor Mimo Targets Magento and Docker to Deploy Crypto Miners and Proxyware
News

Threat Actor Mimo Targets Magento and Docker to Deploy Crypto Miners and Proxyware

The threat actor responsible for exploiting weak Craft CMS instances has changed its strategy to target misconfigured Docker instances and Magento CMS. A threat actor known as Mimo (also known as Hezb) has been implicated in the activities. Mimo has a history of using N-day security holes in different online apps to install cryptocurrency miners. In a report released this week, Datadog Security Labs stated that while Mimo's main incentive is still financial, the sophistication of their recent operations raises the possibility that they are preparing for more lucrative illegal activities through bandwidth monetization and cryptocurrency mining. In May 2025, Sekoia disclosed Mimo's use of CVE-2025-32432, a serious security vulnerability in Craft CMS, for proxyjacking and cryptojack...
New Credit Card Skimmer Targets WordPress, Magento, and OpenCart Sites
News

New Credit Card Skimmer Targets WordPress, Magento, and OpenCart Sites

Caesar Cipher Skimmer is a new credit card web skimmer that targets several content management system (CMS) platforms, including WordPress, Magento, and OpenCart. Malware that is introduced into e-commerce websites with the intention of stealing credit card and payment information is known as a web skimmer. Sucuri reports that the most recent effort involves malevolent changes being made to the checkout PHP file ("form-checkout.php") connected to the WordPress WooCommerce plugin in order to steal credit card information. Security researcher Ben Martin observed that within the last several months, the injections have been altered to appear less suspicious than a lengthy obfuscated script read more about New Credit Card Skimmer Targets WordPress Magento and OpenCart Sites. Get u...