logo.png
Guided Website Threat Review

Foregenix Blog

Kirsty Trainer

Hacked eCommerce Websites and Self-Notification

web security

,15/07/16 11:19

The number of hacked websites losing payment card data is rising rapidly - and the attacks are becoming more sophisticated, stealthy and continue to remain very lucrative for criminals.  You've all probably heard this before and are tired of the rhetoric.  What you may not have heard before is what it means for your online business if your website gets hacked and loses payment card data.  What are the potential liabilities and what is the industry doing to try to curb the loss of payment card data?

Read More
Benjamin Hosack

SAQ A & SAQ A-EP - Security & PCI Compliance For eCommerce Businesses

web security

,05/07/16 08:30

Understanding the PCI DSS and how it relates to a small to medium-sized eCommerce business is the first challenge for most businesses trying to becoming PCI DSS Compliant. With this article we hope to simplify what you need to know, what you need to do and why it is important.

Read More
Duncan Slater

Alert: Major UK Payment Service Provider iFrame Man-In-The-Middle Breach

The Foregenix Digital Forensics and Incident Response Team recently reported a man-in-the-middle attack that we had seen executed against an iFrame redirected payment method.  The attack specifically targeted the iFrame of a popular UK Payment Service Provider (PSP). We have received numerous requests for more detailed information around how the attack was orchestrated – principally as outsourced payment models were considered largely secure – and in that light we present the details of how the attack was accomplished.

Read More
Benjamin Hosack

TeamViewer Used to Attack Leading Footwear Retailer

Indicators of compromise

,10/06/16 09:26

TeamViewer has been all over the news in the last few days with “significant” numbers of  TeamViewer clients expressing/venting on Reddit, Twitter and other social media channels.  TeamViewer has denied that there has been a breach of their systems and instead has pointed to “mega-breaches” of social networks and users using the same account credentials across multiple platforms.  Coincidentally, Foregenix has recently completed a case study involving compromised TeamViewer credentials.

Read More
Kirsty Trainer

Between 35,000 and 40,000 credit cards exposed to hackers after coding errors led to SQL Injection.

,25/05/16 15:00

The Forensic team at Foregenix are used to getting cases involving SQL Injections through the door – in fact, not only is SQLi one of the ‘oldest’ tricks in the book, it is still one of the most common attacks seen.

Read More
Kirsty Trainer

Hacked eCommerce Websites and Self-Notification

web security

,15/07/16 11:19

The number of hacked websites losing payment card data is rising rapidly - and the attacks are becoming more sophisticated, stealthy and continue to remain very lucrative for criminals.  You've all probably heard this before and are tired of the rhetoric.  What you may not have heard before is what it means for your online business if your website gets hacked and loses payment card data.  What are the potential liabilities and what is the industry doing to try to curb the loss of payment card data?

Read More
Benjamin Hosack

SAQ A & SAQ A-EP - Security & PCI Compliance For eCommerce Businesses

web security

,05/07/16 08:30

Understanding the PCI DSS and how it relates to a small to medium-sized eCommerce business is the first challenge for most businesses trying to becoming PCI DSS Compliant. With this article we hope to simplify what you need to know, what you need to do and why it is important.

Read More
Duncan Slater

Alert: Major UK Payment Service Provider iFrame Man-In-The-Middle Breach

The Foregenix Digital Forensics and Incident Response Team recently reported a man-in-the-middle attack that we had seen executed against an iFrame redirected payment method.  The attack specifically targeted the iFrame of a popular UK Payment Service Provider (PSP). We have received numerous requests for more detailed information around how the attack was orchestrated – principally as outsourced payment models were considered largely secure – and in that light we present the details of how the attack was accomplished.

Read More
Benjamin Hosack

TeamViewer Used to Attack Leading Footwear Retailer

Indicators of compromise

,10/06/16 09:26

TeamViewer has been all over the news in the last few days with “significant” numbers of  TeamViewer clients expressing/venting on Reddit, Twitter and other social media channels.  TeamViewer has denied that there has been a breach of their systems and instead has pointed to “mega-breaches” of social networks and users using the same account credentials across multiple platforms.  Coincidentally, Foregenix has recently completed a case study involving compromised TeamViewer credentials.

Read More
Kirsty Trainer

Between 35,000 and 40,000 credit cards exposed to hackers after coding errors led to SQL Injection.

,25/05/16 15:00

The Forensic team at Foregenix are used to getting cases involving SQL Injections through the door – in fact, not only is SQLi one of the ‘oldest’ tricks in the book, it is still one of the most common attacks seen.

Read More

Cyber Security Insights

Duncan Slater
26/05/17 14:08

“Mind the Gap” – As a Small eCommerce Business, Who is Responsible for Your Security?

  Major corporations spend hundreds of thousands of pounds and in some cases employ teams of people dedicated to manage and ensure the security of ...

Read More

Kirsty Trainer
23/05/17 10:48

8 Critical Steps to Reduce the Risk of Ransomware Infection

The WannaCry ransomware infestation is a wake-up call for all entities connected to public networks, such as the internet, to recognise ...

Read More

Mike Hinton
16/05/17 17:24

Foregenix announce new partnership with Juno Web Design

We’re delighted to announce a new partnership between ourselves and Nottinghamshire based agency ‘Juno’. With the rapidly increasing threat to ...

Read More

Kirsty Trainer
05/05/17 09:42

Foregenix choose Australia as launch pad for Asia Pacific expansion

Foregenix are setting-up a new base in Australia, targetting the Asia Pacific region for growth. The new office in Sydney will open in May and be ...

Read More

Kirsty Trainer
11/04/17 12:03

New survey shows 78% of eCommerce websites at risk

47,000 out of 60,000 websites missing critical security patches Over 3,000 are already hacked and losing customer data now External security scans ...

Read More