Attackers are deploying a Linux backdoor on compromised e-commerce servers after injecting a credit card skimmer into online shops' websites. . The PHP-coded web skimmer (a script designed to steal and exfiltrate customers' payment and personal info) is added and camouflaged as a .JPG image file in the /app/design/frontend/ folder. The attackers use this script to download and inject fake payment forms on checkout pages displayed to customers by the hacked online shop. . Cybercriminals implement a sinister JavaScript payload on UNIX-based online retail platforms, aiming to capture buyers' financial details via counterfeit submission forms.. Linux Malware, Web Skimmer, E-Commerce Security, PHP Injection, Online Threats. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.