Blog
JavaScript Used by Phishing Page to Steal Magento Credentials
By David Bisson on Wed, 10/14/2020
Digital attackers created a Magento phishing page that used JavaScript to exfiltrate the login credentials of its victims. Sucuri came across a compromised website using the filename "wp-order.php" during an investigation. This phishing page hosted what appeared to be a legitimate Magento 1.x login portal at the time of discovery. In support of this...