First WebRTC-based payment skimmer targeting major retailers
By using WebRTC, the attackers bypass common defenses such as Content Security Policy (CSP) and HTTP-based monitoring tools.
3 min read
Cybersecurity Help is a global vulnerability intelligence provider. We monitor vulnerabilities in software from 60,000+ vendors and help customers prevent potential data breaches by addressing them proactively.
Request DemoBy using WebRTC, the attackers bypass common defenses such as Content Security Policy (CSP) and HTTP-based monitoring tools.
3 min readAccording to reports, threat actors managed to exfiltrate data from nearly 500,000 infected devices.
3 min readThe attackers reportedly bypassed two-factor authentication and, in several cases, set up automatic email forwarding.
2 min readAttackers use the ClickFix tacticts to trick candidates into running a command on their own computer.
2 min readAlthough there is no evidence of active exploitation, users are strongly advised to patch their instances as soon as possible.
3 min read