Credit Cards Were Forged from a Prominent e-Cigarette Store

This article has been indexed from

CySecurity News – Latest Information Security and Hacking Incidents

 

Since being breached, Element Vape, a famous online retailer of e-cigarettes including vaping kits, is harboring a credit card skimmer on its website. In both retail and online storefronts in the United States and Canada, this retailer provides e-cigarettes, vaping equipment, e-liquids, and Synthetic drugs.
 
Its website Element Vape is uploading a potentially Malicious file from either a third-party website that appears to be a credit card stealer. Magecart refers to threat actors who use credit card cybercriminals on eCommerce sites by infiltrating scripts. 
On numerous shop webpages, beginning with the homepage, a mystery base64-encoded script may be seen on pages 45-50 of the HTML source code. For an unknown period of time, the computer worm has so far been present on ElementVape.com. 
This code was gone as of February 5th, 2022, and before, according to a Wayback Machine review of ElementVape.com. As a result, the infection appears to have occurred more recently, probably after the date and before today’s detection. When decoded, it simply fetches the appropriate JavaScript file from a third-party site :
/weicowire[.]com/js/jquery/frontend.js
When this script was decoded and examined, it was apparent – […]
Content was cut in order to protect the source.Please visit the source for the rest of the article.

Read the original article: