Smashing Security podcast #440: How to hack a prison, and the hidden threat of online checkouts - A literal insider threat: we head to a Romanian prison where “self-service” web kiosks al... https://grahamcluley.com/smashing-security-podcast-440/ #smashingsecurity #securitythreats #vulnerability #paymentcard #guestblog #lawℴ #dataloss #magecart #podcast #romania #prison #pci
Smashing Security podcast #440: How to hack a prison, and the hidden threat of online checkouts

A literal insider threat: we head to a Romanian prison where “self-service” web kiosks allowed inmates to run wild. Then we head to the checkout aisle to ask…

Graham Cluley
📢 H1 2025: Microsoft et les appliances périmétriques en tête des exploits, essor des RATs, fraude NFC et Magecart
📝 Source: Recorded Future / Insikt Group.
📖 cyberveille : https://cyberveille.ch/posts/2025-09-05-h1-2025-microsoft-et-les-appliances-perimetriques-en-tete-des-exploits-essor-des-rats-fraude-nfc-et-magecart/
🌐 source : https://www.recordedfuture.com/research/h1-2025-malware-and-vulnerability-trends
#IOC #Magecart #Cyberveille
H1 2025: Microsoft et les appliances périmétriques en tête des exploits, essor des RATs, fraude NFC et Magecart

Source: Recorded Future / Insikt Group. Dans un rapport publié le 28 août 2025, le chercheur détaille les tendances vulnérabilités et malwares observées au 1er semestre 2025, avec un focus sur l’exploitation des systèmes exposés, l’évolution des outils et TTPs, et les menaces mobiles et e‑commerce. Principaux constats vulnérabilités: 23 667 CVE publiées (+16% vs H1 2024), 161 vulnérabilités activement exploitées dont 42% avec PoC public, 69% sans authentification et 30% RCE. Microsoft concentre le plus grand nombre d’exploits (17% des cas), à égalité avec les appliances périmétriques (SSL‑VPN, NGFW, portails d’accès). Plus de la moitié des exploitations attribuées impliquent des acteurs étatiques; les failles d’Ivanti sont particulièrement visées (ex. CVE‑2025‑0282). Post‑exploitation, Cobalt Strike domine, suivi de Vshell RAT; les backdoors représentent ~23% des charges.

CyberVeille

This #Magecart smart contract got updated recently and is now pointing to keritysuc[.]xyz

https://infosec.exchange/@threatcat_ch/114082428887661948

ThreatCat.ch (@threatcat_ch@infosec.exchange)

#etherhiding (hiding malicious code in blockchain based smart contracts) is not only by #ClearFake related actors – but now also for #Magecart 👇

Infosec Exchange

While investigating an infected website, we noticed call to BSC testnet contract 0x0967296defa0fd586c9ede5730380e2b059fab95 : https://testnet.bscscan.com/address/0x0967296defa0fd586c9ede5730380e2b059fab95

The contract’s content is clearly malicious and connects over WebSocket to suckerity[.]xyz (behind Cloudflare), not related to #ClearFake, but reminds us #Magecart related injections:

#etherhiding (hiding malicious code in blockchain based smart contracts) is not only by #ClearFake related actors – but now also for #Magecart 👇
📬 Magecart-Angriff auf Magento: Kreditkartendaten über Image-Tags abgefangen
#Cyberangriffe #Datenschutz #Malware #Datendiebstahl #Datenklau #eCommerce #Magecart #Magento #Skimming https://sc.tarnkappe.info/addaeb
Magecart-Angriff auf Magento: Kreditkartendaten über Image-Tags abgefangen

Hacker starten derzeit Angriffe auf Magento, um Kreditkartendaten zu stehlen. Der Schadcode lauert zwischen Image-Tags.

TARNKAPPE.INFO
Magecart: de onzichtbare bedreiging voor online betaalkaarten

Magecart, een groep van kwaadaardige hackers, blijft een ernstige bedreiging vormen voor online winkelplatformen door betaalkaartgegevens te stelen. Deze geava

Tech Nieuws
Had a productive evening yesterday :)
#skimming #magecart #hunting

🚨 Did you know that cybercriminals are casually chatting within compromised code to split profits? 😳 The "Mongolian Skimmer" campaign reveals just that, using JavaScript obfuscation and anti-debugging tactics to evade detection.

🔒 Cybersecurity Tip: Stay ahead of threats by regularly auditing your JavaScript for obfuscated code and setting strong Content Security Policies (CSPs) to prevent unauthorized scripts from running.

🛡️ How confident are you in the security of your client-side scripts? Have you seen anything suspicious lately? Let’s discuss!

📖 Dive deeper into the story and learn how to protect yourself: https://guardiansofcyber.com/threats-vulnerabilities/the-mongolian-skimmer-inside-a-javascript-skimming-campaign-using-obfuscation-and-anti-debugging-tactics/

#Cybersecurity #GuardiansOfCyber #Guardians #JavaScriptSecurity #SkimmingAttacks #WebSecurity #ClientSideSecurity #Magecart #ThreatIntelligence #CyberThreats