Dutch researcher finds NRSC web store among 5,900 e-commerce sites infected with malware designed to steal payment card details.
Visitors to the National Republican Senatorial Committee (NRSC) web store between March and October may have had their credit card data stolen by Russian hackers exploiting weak passwords or security, reports KrebsonSecurity, quoting Dutch researcher Willem De Groot who discovered the hack.
The NRSC, claims De Groot, is among more than 5,900 e-commerce sites, including Converse and Audi, breached by the same criminals who sent the stolen data to a Russian-language net service provider in Belize.
The researcher says the malware found on the affected sites was found to come from Internet addresses assigned to Dataflow, a company operating in Belize and Seychelles and offering “bulletproof hosting.” He adds the malicious code was positioned in the websites’ database, which is how it remained undetected for long.
KrebsonSecurity says the criminals had used web-based keylogging programs designed to pilfer data from web server applications, thus stealing client details either post- or pre-encryption.
However, when told of the hack, many of the affected sites' owners dismissed its possibility believing in the foolproof security of the SSL technology they employed.
For full story, click here.
About the Author(s)
You May Also Like
Beyond Spam Filters and Firewalls: Preventing Business Email Compromises in the Modern Enterprise
April 30, 2024Key Findings from the State of AppSec Report 2024
May 7, 2024Is AI Identifying Threats to Your Network?
May 14, 2024Where and Why Threat Intelligence Makes Sense for Your Enterprise Security Strategy
May 15, 2024Safeguarding Political Campaigns: Defending Against Mass Phishing Attacks
May 16, 2024
Black Hat USA - August 3-8 - Learn More
August 3, 2024Cybersecurity's Hottest New Technologies: What You Need To Know
March 21, 2024