Discover this podcast and so much more

Podcasts are free to enjoy without a subscription. We also offer ebooks, audiobooks, and so much more for just $11.99/month.

Behind the Google shopping ad masks. [Research Saturday]

Behind the Google shopping ad masks. [Research Saturday]

FromCyberWire Daily


Behind the Google shopping ad masks. [Research Saturday]

FromCyberWire Daily

ratings:
Length:
15 minutes
Released:
Sep 23, 2023
Format:
Podcast episode

Description

Maxim Zavodchik from Akamai joins Dave to discuss their research on "Xurum: New Magento Campaign Discovered." Akamai researchers have discovered an ongoing server-side template injection campaign that is exploiting digital commerce websites. This campaign targets Magento 2 shops, and was dubbed Xurum in reference to the domain name of the attacker’s command and control (C2) server. 
The research states "The attacker uses an advanced web shell named “wso-ng” that is activated only when the attacker sends the cookie “magemojo000” to the backdoor “GoogleShoppingAds” component."
The research can be found here:
Xurum: New Magento Campaign Discovered

Learn more about your ad choices. Visit megaphone.fm/adchoices
Released:
Sep 23, 2023
Format:
Podcast episode