Skip to content
Up To Date Time

Up To Date Time

  • Home
  • Sports
  • cryptocurrency
  • Technology
  • Virtual Reality
  • Education Law
  • More
    • About Us
    • Contact Us
    • Disclaimer
    • Privacy Policy
    • Terms and Conditions
  • Toggle search form
Hundreds of top ecommerce sites under attack following Magento supply chain flaw

Hundreds of top ecommerce sites under attack following Magento supply chain flaw

Posted on May 5, 2025 By rehan.rafique No Comments on Hundreds of top ecommerce sites under attack following Magento supply chain flaw

Hundreds of top ecommerce sites under attack following Magento supply chain flaw


  • Sansec found 21 Magento extensions with malicious code
  • The extensions belong to three companies, who claim everything’s in order
  • Users are advised to take immediate action

Hundreds of ecommerce websites, including at least one major player, behemoth, have been compromised after poisoned Magento extensions woke up from a six-year slumber.

Cybersecurity researchers Sansec discovered the supply chain attack after one of its clients was targeted, ultimately finding 21 backdoored Magento extensions, belonging to three companies: Tigren, Meetanshi, and MSG. Here are their names:

Tigren Ajaxsuite
Tigren Ajaxcart
Tigren Ajaxlogin
Tigren Ajaxcompare
Tigren Ajaxwishlist
Tigren MultiCOD
Meetanshi ImageClean
Meetanshi CookieNotice
Meetanshi Flatshipping
Meetanshi FacebookChat
Meetanshi CurrencySwitcher
Meetanshi DeferJS
MGS Lookbook
MGS StoreLocator
MGS Brand
MGS GDPR
MGS Portfolio
MGS Popup
MGS DeliveryTime
MGS ProductTabs
MGS Blog

The long con

The company says some of the extensions were backdoored back in 2019. According to CyberInsider, the extensions were distributed via the vendors’ official download servers, which were “breached at some point”.


You may like

However, the attackers only activated the malicious code in April 2025. In the meantime, hundreds of ecommerce websites installed them, which resulted in the compromise of roughly 500 – 1,000 websites, including one owned by a $40 billion multinational corporation.

Sansec says that the attackers added a PHP backdoor to the license check file of all of the extensions, which allowed the threat actors to execute arbitrary PHP code remotely.

This granted them control over affected stores, compromising sensitive customer data and financial transactions in the process.

The researchers said they reached out to the three vendors with their findings, but got mixed responses.

Sign up to the TechRadar Pro newsletter to get all the top news, opinion, features and guidance your business needs to succeed!

Tigren denied having been breached and is allegedly still serving backdoored extensions, while Meetanshi confirmed having been breached but denied experiencing an extension compromise.

Finally, MGS did not even respond to Sansec’s inquiries, even though BleepingComputer confirmed the backdoor in at least one extension that’s currently on offer, for free, on the company website.

If you’re running a Magento store with any of the above-mentioned extensions, you should act immediately and secure your assets.

Via BleepingComputer

You might also like

Technology

Post navigation

Previous Post: Market Analysis: Gold Dips Further and WTI Crude Oil Tumbles
Next Post: Naomi Osaka, or when news breaks in your research area

More Related Articles

Complete SEO Course + WordPress SEO Yoast Complete SEO Course + WordPress SEO Yoast Technology
Dunk City Dynasty, First NBPA-Licensed 3v3 Street Basketball Game » JaypeeOnline Dunk City Dynasty, First NBPA-Licensed 3v3 Street Basketball Game » JaypeeOnline Technology
The human harbor: Navigating identity and meaning in the AI age The human harbor: Navigating identity and meaning in the AI age Technology
The Impact of Forex Trading Bot on Automated Trading » JaypeeOnline The Impact of Forex Trading Bot on Automated Trading » JaypeeOnline Technology
Salesforce Lightning UI Best Practice with SLDS – DevFacts | Tech Blog | Developer Community Salesforce Lightning UI Best Practice with SLDS – DevFacts | Tech Blog | Developer Community Technology
5 Misconceptions Web Developers Believe About Mobile App Development 5 Misconceptions Web Developers Believe About Mobile App Development Technology

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Recent Posts

  • Another Galway Races feature for Gordon Elliott
  • Reclaiming Control: Digital Sovereignty in 2025
  • BTC Trading: Elliott Wave Theory
  • The XR Week Peek (2025.08.05): Ray-Ban Meta tripled their sales, Brilliant Labs launches Halo glasses, and more!
  • How to run Gemma 3 on Google Cloud Run, the easiest way with AI Studio

Categories

  • cryptocurrency
  • Education Law
  • Sports
  • Technology
  • Virtual Reality

Copyright © 2025 Up To Date Time.

Powered by PressBook Blog WordPress theme