Blog Layout

Hackers Stealing Credit Card Info Are Targeting E-Commerce WordPress Sites

sccomputerguys • December 22, 2021

With the holiday shopping season in full swing shoppers are descending on virtual storefronts in droves seeking the best deals.  Naturally this means that hackers are also circling like sharks watching for an opportunity to steal data and profit from it.

Their most recent trick?  To infect random WordPress plugins with malicious code that can be activated later to harvest and exfiltrate payment card information.

WordPress has gotten pretty good at ferreting out malicious code residing in the 'wp-includes' and 'wp-admin' directories. Those are the places that most other anti-malware software looks first. So malicious code that relies on being in either of those directories doesn't tend to last long enough to pay dividends to the hackers.

Naturally this has prompted them to find workarounds. This year's big evolution in the ongoing war between hackers and security professionals seems to be hiding code in places that not many would think to look for it.

So far that seems to be working out well for the hackers and card scraping type attacks are on the rise again this year.

The good news is that if you have a WordPress ecommerce site and want to minimize your risk there are several things you can do.

Here are the Big Three:

  • Restrict and closely monitor access to your 'Wp-admin' folder. Only specific trusted IP addresses should have access to this folder.
  • File integrity monitoring via active server-side scanning. That way if code changes on your website you'll know about it almost immediately.
  • And make sure your IT staff is reviewing log files on a regular basis. Even if a hacker manages to slip something past your defenses it's either going to be reflected in the log file or there will be a conspicuous absence which should raise a red flag.

The holiday season is a very big deal to online vendors but it also carries some risk.  Make sure you're minimizing yours.

By sccomputerguys July 22, 2022
Do you own one or more of the following products made by Cisco? The RV110W Wireless-N VPN Firewall The RV130 VPN Router The RV130W Wireless-N Multifunction VPN Router The RV215W Wireless-N VPN ...
By sccomputerguys July 21, 2022
Do you use Microsoft Teams?  If so, you'll be thrilled to know that the Redmond Giant is continuing to pour resources into improving the software with a specific focus on audio and ...
By sccomputerguys July 20, 2022
Corporate branding can be worth its weight in gold and certain images are absolutely iconic.  The Golden Arches, the Nike "swoosh," and Apple's Apple all come to mind. Logo images give companies ...
By sccomputerguys July 19, 2022
Remember the Heartbleed scare we had a couple years back?  It was a nasty side-channel attack that was somewhat exotic and difficult to pull off, and it was absolutely devastating and sent ...
By sccomputerguys July 18, 2022
Microsoft Exchange servers are once more in the crosshairs of hackers around the world.  Most recently, hacking groups have been specifically targeting them to deploy BlackCat ransomware. As is common among ransomware ...
By sccomputerguys July 16, 2022
If you grew up in the days before the internet, it's absolutely staggering to think of all the ways that mobile technology has changed our lives (and mostly for the better). Remember ...
By sccomputerguys July 15, 2022
It may seem as though Internet Explorer is the browser that will not die, but according to Microsoft, it is now a step closer to breathing its last virtual breath. Microsoft has ...
By sccomputerguys July 14, 2022
If you're involved with IT Security at any level and if your network includes Linux servers, keep a watchful eye out for the new Panchan botnet. It first appeared in the wilds ...
By sccomputerguys July 13, 2022
These days, companies spend significant sums of money to protect themselves from cyber criminals.  The threat matrix is vast, and attacks can come from almost any quarter. That is why many companies ...
By sccomputerguys July 12, 2022
Do you receive healthcare of any kind from Kaiser Permanente?  If so, be aware that they recently published a data breach notification indicating that an unidentified attacker accessed an email account that ...
More Posts
Share by: