6,500 online stores breached in Volusion supply-chain attack
Wednesday, October 9, 2019
Customer credit card details were targeted using a malicious piece of JavaScript.
The founder and CEO of web security company ImmuniWeb, Ilia Kolochenko, said the breach was “one more sharp reminder” about the risks of supply-chain attacks from third-parties and the cloud.
“Properly implemented continuous security monitoring could have prevented this incident,” Kolochenko said, adding that while it was too premature to make any conclusions, one thing is clear; “Volusion, breached stores, their customers and banks that issued the compromised cards, are doomed for expensive and protracted litigation with numerous counter and cross-claims.” Read Full Article
Dark Reading: Most US Presidential Campaign Websites Offer Little Privacy Protection
SecurityWeek: 2020 Presidential Candidate Campaign Websites Fail On User Privacy