On the websites of many companies using the Replay Now conference network, Malwarebytes announced on Thursday, cybercriminals have planted a payment card skimmer.
Playback Also helps organisations to capture activities through live streaming or on demand and deliver the content. It also offers a virtual conference hall and lets firms promote their operations.
Researchers from Malwarebytes found that a server owned by Playback Now, which hosts conference materials for clients of the company, was hacked. The consumer websites hosted on it were injected with a payment card skimmer that allowed the attackers to harvest the financial details of consumers buying conference materials from those pages. Customers receive a dedicated platform that they can use to serve their content.
Tens of these pages, often belonging to educational or medical institutions, tend to be infected. It’s worth noting that the official website of Playback Now, playbacknow.com, does not seem to be affected.
According to news, the affected websites were powered by Magento version 1, which is no longer supported. This obsolete version of the platform also drives tens of thousands of e-commerce websites.
In what the company described as the biggest ever skimming operation, digital skimming security solutions provider Sansec announced last month that hundreds of Magento stores were hacked daily.
At the time, the firm said the perpetrators may have used a new hack that had been marketed for $5,000. In this attack, the vulnerability, which enables users to access Magento 1 websites, may have also been used, probably by the same party that Sansec monitored.
It submitted its results to Playback Now, Malwarebytes said, although it is uncertain whether any action has been taken.