START SELLING WITH BigBCC TODAY

Start your free trial with BigBCC today.

BLOG |

PolyShell vulnerability: Hackers are exploiting lots of e-commerce sites

PolyShell vulnerability: Hackers are exploiting lots of e-commerce sites

Table of Contents

Hackers have found their way into a large number of internet e-commerce sites.

This latest cybersecurity threat targets web stores running on the Magento or Adobe Commerce platforms, according to BleepingComputer, which cited the security firm Sansec as first publicizing the exploit. That was just over a week ago, and since Sansec exposed the vulnerability, known as PolyShell, the firm claimed that 56 percent of vulnerable stores have been experienced attacks.

SEE ALSO:

Hackers says they breached Crunchyroll, stole nearly 7 million users’ data

You can check out Sansec’s analysis for the full technical details of what’s going on, but in the simplest terms possible, it seems hackers have managed to insert a credit card skimmer into the API for Magento, an open-source e-commerce platform acquired by Adobe several years ago. Sansec says it spotted the attack being used on an unnamed “major car manufacturer.”

We have contacted Adobe for comment and will update this story if they respond.

Adobe has released a fix for this in the beta branch of its software, but that doesn’t help the presumably vast majority of sites running the non-beta version of the software. Until the fix goes public, this will be an issue for any site running Magento or Adobe Commerce.

Source link

Share Article:

The newsletter for entrepreneurs

Join millions of self-starters in getting business resources, tips, and inspiring stories in your inbox.

Unsubscribe anytime. By entering your email, you agree to receive
emails from BigBCC.

The newsletter for entrepreneurs

Join millions of self-starters in getting business resources, tips, and inspiring stories in your inbox.

Unsubscribe anytime. By entering your email, you agree to receive marketing emails from BigBCC. By proceeding, you agree to the Terms and Conditions and Privacy Policy.

SELL ANYWHERE
WITH BigBCC

Learn on the go. Try BigBCC for free, and explore all the tools you need to
start, run, and grow your business.