By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
Viral Trending contentViral Trending content
  • Home
  • World News
  • Politics
  • Sports
  • Celebrity
  • Business
  • Crypto
  • Gaming News
  • Tech News
  • Travel
Reading: Hackers Exploit Google Tag Manager to Deploy Credit Card Skimmers on Magento Stores
Notification Show More
Viral Trending contentViral Trending content
  • Home
  • Categories
    • World News
    • Politics
    • Sports
    • Celebrity
    • Business
    • Crypto
    • Tech News
    • Gaming News
    • Travel
  • Bookmarks
© 2024 All Rights reserved | Powered by Viraltrendingcontent
Viral Trending content > Blog > Tech News > Hackers Exploit Google Tag Manager to Deploy Credit Card Skimmers on Magento Stores
Tech News

Hackers Exploit Google Tag Manager to Deploy Credit Card Skimmers on Magento Stores

By Viral Trending Content 2 Min Read
Share
SHARE

Feb 10, 2025Ravie LakshmananMalware / Payment Security

Threat actors have been observed leveraging Google Tag Manager (GTM) to deliver credit card skimmer malware targeting Magento-based e-commerce websites.

Website security company Sucuri said the code, while appearing to be a typical GTM and Google Analytics script used for website analytics and advertising purposes, contains an obfuscated backdoor capable of providing attackers with persistent access.

As of writing, as many as three sites have been found to be infected with the GTM identifier (GTM-MLHK2N68) in question, down from six reported by Sucuri. GTM identifier refers to a container that includes the various tracking codes (e.g., Google Analytics, Facebook Pixel) and rules to be triggered when certain conditions are met.

Further analysis has revealed that the malware is being loaded from the Magento database table “cms_block.content,” with the GTM tag containing an encoded JavaScript payload that acts as a credit card skimmer.

Cybersecurity

“This script was designed to collect sensitive data entered by users during the checkout process and send it to a remote server controlled by the attackers,” security researcher Puja Srivastava said.

Upon execution, the malware is designed to pilfer credit card information from the checkout pages and send it to an external server.

This is not the first time GTM has been abused for malicious purposes. In April 2018, Sucuri revealed that the tool was being leveraged for malvertising purposes.

The development comes weeks after the company detailed another WordPress campaign that likely employed vulnerabilities in plugins or compromised admin accounts to install malware that redirected site visitors to malicious URLs.

Found this article interesting? Follow us on Twitter  and LinkedIn to read more exclusive content we post.

You Might Also Like

Apple iOS 27 Release: Everything New Coming to Your iPhone

Hackers are exploiting a critical LiteLLM pre-auth SQLi flaw

In 2026, what medtech skills will empower you to face the future head on?

Google Fitbit Air Deal Includes Free Active Band

Tesla Reveals New Details About Robotaxi Crashes—and the Humans Involved

TAGGED: #E-Commerce, Cyber Security, Cybersecurity, Digital Skimming, Google Tag Manager, Internet, JavaScript, Magento, Malware, Payment Security, Threat Intelligence, web security
Share This Article
Facebook Twitter Copy Link
Previous Article Schumer Outlines Four-Pronged Plan to Counter Trump Administration
Next Article Gun control bill and labor fights, a party-line Jan. 6 resolution and more in the Colorado legislature this week
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

- Advertisement -
Ad image

Latest News

Apple iOS 27 Release: Everything New Coming to Your iPhone
Tech News
Hackers are exploiting a critical LiteLLM pre-auth SQLi flaw
Tech News
Chelsea fans desperate to have connection with players and club again – opinion
Sports
Israel and Lebanon extend their ceasefire by 45 days following talks in the US
World News
Ethereum Price Lags Despite Record Staking Levels: What Are Investors Missing?
Crypto
Kylie Jenner Before & After Plastic Surgery: Photos With Lip Fillers & More
Celebrity
Ghost of Yōtei: Legends’ Raid is the “Last Major Planned Update,” Says Sucker Punch
Gaming News

About Us

Welcome to Viraltrendingcontent, your go-to source for the latest updates on world news, politics, sports, celebrity, tech, travel, gaming, crypto news, and business news. We are dedicated to providing you with accurate, timely, and engaging content from around the globe.

Quick Links

  • Home
  • World News
  • Politics
  • Celebrity
  • Business
  • Home
  • World News
  • Politics
  • Sports
  • Celebrity
  • Business
  • Crypto
  • Gaming News
  • Tech News
  • Travel
  • Sports
  • Crypto
  • Tech News
  • Gaming News
  • Travel

Trending News

cageside seats

Unlocking the Ultimate WWE Experience: Cageside Seats News 2024

Investing £5 a day could help me build a second income of £329 a month!

Brussels unveils plans for a European Degree but struggles to explain why

cageside seats
Unlocking the Ultimate WWE Experience: Cageside Seats News 2024
May 22, 2024
Investing £5 a day could help me build a second income of £329 a month!
March 27, 2024
Brussels unveils plans for a European Degree but struggles to explain why
March 27, 2024
Trump evokes more anger and fear from Democrats than Biden does from Republicans, AP-NORC poll shows
March 28, 2024
© 2024 All Rights reserved | Powered by Vraltrendingcontent
  • About Us
  • Contact US
  • Disclaimer
  • Privacy Policy
  • Terms of Service
Welcome Back!

Sign in to your account

Lost your password?