Magecart POS malware found on Forbes subscription page

The publisher Forbes appears to be the most recent victim of malicious actors pushing Magecart POS skimming malware.

Security researcher Troy Mursch, of Bad Packets Reports, set off the alarm on Twitter indicating Forbes magazine subscription website had been infected and was removing credit card data, Tripwire reported. As with other Magecart cases, the malware copied payment card numbers, expiration dates, three digit CVV/CVC security number, carhdholder names, addresses, and phone numbers.

The malware may have gained access to Forbes through a third-party vendor that was used to supply icons to the website and which has since been taken down, Tripwire said.

Forbes joins a long and growing list of companies that have been hit with Magecart, the most recent being the Atlanta Hawks online store, Ticketmaster and British Airways.

Get daily email updates

SC Media's daily must-read of the most current and pressing daily news

By clicking the Subscribe button below, you agree to SC Media Terms and Conditions and Privacy Policy.