• Subscription
  • Printed Issue
  • Advertise
  • Contact Us
  • النسخة العربية
Tuesday, 16 December, 2025
CMOs Magazine
No Result
View All Result
  • Login
  • Register

No products in the cart.

  • Home
  • News
    • Marketing
    • Advertising
    • Media
    • PR
    • Digital
    • CSR
    • Events
  • In-Depth
    • Reports
    • Surveys
  • Insights & Analysis
    • Consumer Behavior
    • Market Performance
  • Interviews
  • Opinions
  • Business
SUBSCRIBE
CMOs Magazine
  • Home
  • News
    • Marketing
    • Advertising
    • Media
    • PR
    • Digital
    • CSR
    • Events
  • In-Depth
    • Reports
    • Surveys
  • Insights & Analysis
    • Consumer Behavior
    • Market Performance
  • Interviews
  • Opinions
  • Business
  • النسخة العربية
No Result
View All Result
CMOs Magazine
No Result
View All Result
Home Business

How attackers found a way to steal online shoppers’ payment details using Google Analytics?

CMOs by CMOs
June 24, 2020
in Business
0
Kaspersky New Logo
0
SHARES
0
VIEWS
Share on FacebookShare on Twitter

Kaspersky researchers have uncovered a new technique for stealing users’ payment information on online shopping websites—a type of attack known as web skimming.

By registering for Google Analytics accounts and injecting these accounts’ tracking code into the websites’ source code, attackers can collect users’ credit card details. About two dozen online stores worldwide were compromised using this method.

Web skimming is a popular practice used by attackers to steal users’ credit card details from the payment pages of online stores, whereby attackers inject pieces of code into the source code of the website.

This malicious code then collects the data inputted by visitors to the site (i.e. payment account logins or credit card numbers) and sends the harvested data to the address specified by attackers in the malicious code.

Often, to conceal the fact that the webpage has been compromised, attackers register domains with names that resemble popular web analytics services, such as Google Analytics.

That way, when they inject the malicious code, it’s harder for the site administrator to know that the site has been compromised. For example, a site named “googlc-analytics[.]com” is easy to mistake as a legitimate domain.

Recently, however, Kaspersky researchers have discovered a previously unknown technique for conducting web skimming attacks. Rather than redirecting the data to third-party sources, they redirected it to official Google Analytics accounts.

Once the attackers registered their accounts on Google Analytics, all they had to do was configure the accounts’ tracking parameters to receive a tracking ID.

They then injected the malicious code along with the tracking ID into the webpage’s source code, allowing them to collect data about visitors and have it sent directly to their Google Analytics accounts.

Because the data isn’t being directed to an unknown third-party resource, it’s difficult for administrators to realize the site has been compromised. For those examining the source code, it just appears as if the page is connected with an official Google Analytics account—a common practice for online stores.

To make the malicious activity even harder to spot, the attackers also employed a common anti-debugging technique: if a site administrator reviews the webpage source code using Developer mode, then the malicious code is not executed.

About two dozen websites were found to be compromised in this way, which included stores in Europe and North and South America.

“This is a technique we have not seen before, and one that is particularly effective. Google Analytics is one of the most popular web analytics services out there.

The vast majority of developers and users trust it, meaning it’s frequently given permission to collect user data by site administrators. That makes malicious injects containing Google Analytics accounts inconspicuous—and easy to overlook.

As a rule, administrators should not assume that, just because the third-party resource is legitimate, its presence in the code is ok,” comments Victoria Vlasova, Senior Malware Analyst at Kaspersky.

Tags: Google Analyticskasperky labkasperskyWeb Skimming
CMOs

CMOs

Chief Marketing Officers Magazine (CMOs) is Egypt's first printed and digital publication in both Arabic and English for Marketing, Media and PR Professionals with news, articles and commentary on the industry.

Recommended Stories

Samer Abboud

Memac Ogilvy’s MENA Chief Growth Officer Samer Abboud steps down

December 16, 2025
PUMA Brings Its Global Lounge Experience to Dubai with the City’s Creative Culture Set as the Centre

PUMA Brings Its Global Lounge Experience to Dubai with the City’s Creative Culture Set as the Centre

December 16, 2025
PRL-talabat Pro expands lifestyle benefits with strategic OSN+ entertainment EN.png

talabat pro expands lifestyle benefits with strategic OSN+ entertainment partnership across MENA region

December 12, 2025
Digital Media Forum.jpg

Digital Media Forum Announces Full 2025 Agenda and Speaker Lineup

December 12, 2025
Neverland Entertainment City in Hurghada - owned by Pickalbatros Group

5 Reasons to Visit Pickalbatros’ Neverland City in Hurghada

December 11, 2025
CMOs

Chief Marketing Officers Magazine (CMOs) is Egypt's first printed and digital publication in both Arabic and English for Marketing, Media and PR Professionals with news, articles and commentary on the industry.

Recent Posts

  • Memac Ogilvy’s MENA Chief Growth Officer Samer Abboud steps down
  • PUMA Brings Its Global Lounge Experience to Dubai with the City’s Creative Culture Set as the Centre
  • talabat pro expands lifestyle benefits with strategic OSN+ entertainment partnership across MENA region

Categories

  • Advertising
  • Business
  • Case Studies
  • Consumer Behavior
  • CSR
  • Digital
  • Entertainment
  • Events
  • In-Depth
  • Insights & Analysis
  • Interviews
  • Market Performance
  • Marketing
  • Media
  • Opinions
  • PR
  • Reports
  • Reviews
  • Surveys
  • Video

Subscribe to our Newsletter

By signing up, I agree to our TOS and Privacy Policy.

Copyright © 2021 All Rights Reserved. Designed By INDELIGENT

Welcome Back!

Login to your account below

Forgotten Password? Sign Up

Create New Account!

Fill the forms bellow to register

All fields are required. Log In

Retrieve your password

Please enter your username or email address to reset your password.

Log In

Add New Playlist

No Result
View All Result
  • Home
  • News
    • Marketing
    • Advertising
    • Media
    • PR
    • Digital
    • CSR
    • Events
  • Insights & Analysis
    • Consumer Behavior
    • Market Performance
  • In-Depth
    • Reports
    • Surveys
  • Interviews
  • Opinions
  • Business
  • Links
    • Subscription
    • Printed Issue
    • Advertise
    • Contact Us
  • النسخة العربية

Copyright © 2021 All Rights Reserved. Designed By INDELIGENT