Lil' Skim, a Web Skimmer, Targets Online Vendors

Web skimmers are typically JavaScript-based. In order to plant the malicious script, the criminals behind it need to compromise the security of online vendors. Once an online marketplace's security has been penetrated, the crooks may plant the JavaScript skimmer on pages that collect payment details. This is the exact attack that the Lil' Skim Skimmer executes, a new JavaScript skimmer, which has some resemblance to the infamous MageCart campaign.

As the name of Lil' Skim web Skimmer hints, the special thing about this script is that it is very small in size. Of course, this also limits the scope of its features, but it still has enough features to cause a lot of trouble. It is very difficult for customers to protect themselves from such attacks because there is no way to spot the attack. All they need to do to become a victim is to fill out the payment page of a legitimate online store whose security has been compromised.

Lil' Skim Web Skimmer Steals Payment Data from Customers

These attacks are so dangerous because nothing looks out of the ordinary on the victim's screen. They enter their payment details to complete their order, and there is no warning or error. However, in the background, the Lil' Skim Skimmer collects the payment data and transfers it to the servers of the attackers. Talking about the backbone of the attack, the Lil' Skim Skimmer operators have set up a long list of domain names, which copy legitimate services. Furthermore, they use domains that copy the names of the websites they compromise. For example, one of the victims is Gorillawhips.com – the criminals use the fake domain Gorillawhips.host to exfiltrate data to. This makes it less likely that victims will notice anything out of the ordinary.

While Lil' Skim Skimmer's attack is very similar to the one that the MageCart Gang carries out, these criminals introduce some innovative tactics. The usage of legitimate domains, as well as bootleg copies of the victim's website, is a neat trick to conceal their activity. You can stay safe from Lil' Skim web Skimmer attacks by sticking to reputable and well-secured online shopping sites.

June 30, 2021
Loading...

Cyclonis Backup Details & Terms

The Free Basic Cyclonis Backup plan gives you 2 GB of cloud storage space with full functionality! No credit card required. Need more storage space? Purchase a larger Cyclonis Backup plan today! To learn more about our policies and pricing, see Terms of Service, Privacy Policy, Discount Terms and Purchase Page. If you wish to uninstall the app, please visit the Uninstallation Instructions page.

Cyclonis Password Manager Details & Terms

FREE Trial: 30-Day One-Time Offer! No credit card required for Free Trial. Full functionality for the length of the Free Trial. (Full functionality after Free Trial requires subscription purchase.) To learn more about our policies and pricing, see EULA, Privacy Policy, Discount Terms and Purchase Page. If you wish to uninstall the app, please visit the Uninstallation Instructions page.