Backdoor found in popular ecommerce components (sansec.io)
from Pro@programming.dev to cybersecurity@sh.itjust.works on 07 May 16:57
https://programming.dev/post/29919492

#cybersecurity

threaded - newest

atzanteol@sh.itjust.works on 07 May 17:21 next collapse

Vendor	 Package
Tigren	Ajaxsuite
Tigren	Ajaxcart
Tigren	Ajaxlogin
Tigren	Ajaxcompare
Tigren	Ajaxwishlist
Tigren	MultiCOD
Meetanshi	ImageClean
Meetanshi	CookieNotice
Meetanshi	Flatshipping
Meetanshi	FacebookChat
Meetanshi	CurrencySwitcher
Meetanshi	DeferJS
MGS	Lookbook
MGS	StoreLocator
MGS	Brand
MGS	GDPR
MGS	Portfolio
MGS	Popup
MGS	DeliveryTime
MGS	ProductTabs
MGS	Blog
mearce@programming.dev on 08 May 03:37 collapse

It is rare that a backdoor remains undetected for 6 years, but is even stranger that actual abuse has only started now.