Hackers Use Google Tag Manager to Steal Credit Card Numbers

Feb 17, 2025 | SEO News Feeds | 0 comments

Hackers Use Google Tag Manager To Steal Credit Card Numbers.jpg



SEO Content Writing Service

Hackers are actively exploiting a vulnerability to inject an obfuscated script into Magento-based eCommerce websites. The malware is loaded via Google Tag Manager, allowing them to steal credit card numbers when customers check out. A hidden PHP backdoor is used to keep the code on the site and steal user data.

The credit card skimmer was discovered by security researchers at Sucuri who advise that the malware was loaded from a database table, cms_block.content. The Google Tag Manager (GTM) script on a website looks normal because the malicious script is coded to evade detection.

Once the malware was active it would record credit card information from a Magento ecommerce checkout page and send it to an external server controlled by a hacker.

Sucuri security researchers also discovered a backdoor PHP file. PHP files are the ‘building blocks’ of many dynamic websites built on platforms like Magento, WordPress, Drupal, and Joomla. Thus, a malware PHP file, once injected, can operate within the content management system.

This is the PHP file that researchers identified:

./media/index.php.

According to the advisory published on the Sucuri website:

“At the time of writing this article, we found that at least 6 websites were currently infected with this particular Google Tag Manager ID, indicating that this threat is actively affecting multiple sites.

eurowebmonitortool[.]com is used in this malicious campaign and is currently blocklisted by 15 security vendors at VirusTotal.”

VirusTotal.com is a crowdsourced security service that provides free file scanning and acts as an aggregator of information.

Attorney Websites For Sale 4ebusiness Media Group

Sucuri advises the following steps for cleaning an infected website:

  • “Remove any suspicious GTM tags. Log into GTM, identify, and delete any suspicious tags.
  • Perform a full website scan to detect any other malware or backdoors.
  • Remove any malicious scripts or backdoor files.
  • Ensure Magento and all extensions are up-to-date with security patches.
  • Regularly monitor site traffic and GTM for any unusual activity.”

Read the Sucuri advisory:

Google Tag Manager Skimmer Steals Credit Card Info From Magento Site

Featured Image by Shutterstock/sdx15

Source link


Anxiety Stress Management

Live a Life of Contentment eBook We all want to be satisfied, even though we know some people who will never be that way, and others who see satisfaction as a foreign emotion that they can’t hope to ever feel.

Newspaper Ads Canyon Crest CA

Click To See Full Page Ads

Click To See Half Page Ads

Click To See Quarter Page Ads

Click To See Business Card Size Ads

If you have questions before you order, give me a call @ 951-235-3518 or email @ canyoncrestnewspaper@gmail.com Like us on Facebook Here

You May Also Like

0 Comments

Submit a Comment

Your email address will not be published. Required fields are marked *

Contact Us

Contact Us

Personal Injury Attorney

Websites For Sale Personal Injury Attorneys

Criminal Defense Attorneys

Websites For Sale Criminal Defense Attorney

Bankruptcy Attorneys

Websites For Sale Bankruptcy Attorneys

General Practice Attorneys

Websites For Sale General Practice Attorneys

Family Attorneys

Websites For Sale Family Attorneys

Corporate Attorneys

Websites For Sale Corporate Attorneys

Home Privacy Policy Terms Of Use Anti Spam Policy Contact Us Affiliate Disclosure Amazon Affiliate Disclaimer DMCA Earnings Disclaimer