JavaScript Used by Phishing Page to Steal Magento Credentials

Read the original article: JavaScript Used by Phishing Page to Steal Magento Credentials


Digital attackers created a Magento phishing page that used JavaScript to exfiltrate the login credentials of its victims. Sucuri came across a compromised website using the filename “wp-order.php” during an investigation. This phishing page hosted what appeared to be a legitimate Magento 1.x login portal at the time of discovery. In support of this ruse, […]… Read More

The post JavaScript Used by Phishing Page to Steal Magento Credentials appeared first on The State of Security.


Read the original article: JavaScript Used by Phishing Page to Steal Magento Credentials