NameSilo

domains Crafty Web Skimming Domain Spoofs “https”

Spaceship Spaceship
Watch

Lox

____Top Member
Impact
12,397
Earlier today, KrebsOnSecurity alerted the 10th largest food distributor in the United States that one of its Web sites had been hacked and retrofitted with code that steals credit card and login data. While such Web site card skimming attacks are not new, this intrusion leveraged a sneaky new domain that hides quite easily in a hacked site’s source code: “http[.]ps” (the actual malicious domain does not include the brackets, which are there to keep readers from being able to click on it).

This crafty domain was hidden inside the checkout and login pages for grandwesternsteaks.com, a meat delivery service owned by Cheney Bros. Inc., a major food distributor based in Florida. Here’s what a portion of the login page looked like until earlier today when you right-clicked on the page and selected “view-source”:

gws.png


read more (krebsonsecurity)
 
5
•••
The views expressed on this page by users and staff are their own, not those of NamePros.
1
•••
  • The sidebar remains visible by scrolling at a speed relative to the page’s height.
Back