New MageCart campaign uses browser script to avoid virtual machines

clock • 3 min read
New MageCart campaign uses browser script to avoid virtual machines
Image:

New MageCart campaign uses browser script to avoid virtual machines

The tactic enables cyber actors to target only real victims, not security researchers

Researchers at cyber security firm Malwarebytes have uncovered a new Magecart threat actor that uses a unique form of evasion to ensure it bypasses virtual machines (VM) set up by security research...

To continue reading this article...

Join Computing

  • Unlimited access to real-time news, analysis and opinion from the technology industry
  • Receive important and breaking news in our daily newsletter
  • Be the first to hear about our events and awards programmes
  • Join live member only interviews with IT leaders at the ‘IT Lounge’; your chance to ask your burning tech questions and have them answered
  • Access to the Computing Delta hub providing market intelligence and research
  • Receive our members-only newsletter with exclusive opinion pieces from senior IT Leaders

Join now

 

Already a Computing member?

Login

You may also like
Met police disrupt LabHost scam-as-a-service website

Security

Dozens arrested globally and thousands sent warnings

clock 18 April 2024 • 3 min read
Forty nations pledge not to pay cybercriminals

Security

Comes in the face of rising levels of ransomware

clock 02 November 2023 • 2 min read
Revolut lost $20m due to payment flaw

Threats and Risks

Hackers capitalised on differences between European and US payment systems

clock 11 July 2023 • 3 min read

More on Threats and Risks

CISA identifies GitLab vulnerability under exploit

CISA identifies GitLab vulnerability under exploit

Hope you have two-factor

Tom Allen
clock 03 May 2024 • 2 min read
Experimental Morris II worm can exploit popular AI services to steal data and spread malware

Experimental Morris II worm can exploit popular AI services to steal data and spread malware

Cornell researchers created worm 'to serve as a whistleblower'

clock 01 May 2024 • 3 min read
UK bans devices with weak passwords

UK bans devices with weak passwords

Under new rules, manufacturers must prompt users to change generic passwords during setup

clock 30 April 2024 • 3 min read