Kritec Skimmer

Malware updated 4 months ago (2024-05-04T20:46:58.098Z)
Download STIX
Preview STIX
The Kritec Skimmer is a type of malware that poses significant risks to online stores and their customers through Magecart attacks. This malicious software operates by intercepting the checkout process during online transactions, potentially gaining access to sensitive customer information. The malware can infiltrate systems via suspicious downloads, emails, or websites, often unbeknownst to the user, and can disrupt operations, steal personal information, or even hold data for ransom. An ongoing Magecart attack utilizing the Kritec skimmer was discovered on a Parisian travel accessory web store, creating what analysts have termed as the perfectly hijacked checkout page. This discovery further underscores the potential threats posed by this malware to e-commerce platforms and their users. The attack demonstrates the sophisticated capabilities of the Kritec skimmer, emphasizing the need for robust cybersecurity measures among online retailers. According to Segura, it is believed that the Kritec skimmer is part of larger compromises where malicious code is injected into vulnerable websites, specifically within the Google Tag Manager script. There's a possibility that multiple threat actors are involved in these campaigns, customizing skimmers accordingly. This implies a coordinated effort from cybercriminals, heightening the risk level and necessitating more advanced countermeasures from online businesses and cybersecurity professionals.
Description last updated: 2023-11-28T20:43:04.693Z
Aliases We are not currently tracking any aliases
Miscellaneous Associations
Other elements of context that could aid in the identification of relevance
Analyst Notes & Discussion
Be the first to leave your mark here! Log in to share your views and vote.
Source Document References
Information about the Kritec Skimmer Malware was read from the documents corpus below. This display is limited to 20 results, create a free account to see more
PreviewSource LinkCreatedAtTitle
CERT-EU
a year ago
Magecart/eSkimming Attack Using Kritec Skimmer Creates the Perfectly Hijacked Checkout Page