26 May 2020

Hackers put up for sale SQL databases stolen from online shops


Hackers put up for sale SQL databases stolen from online shops

Cyber crooks are offering for sale more than 30 SQL databases stolen from e-commerce shops from various countries. According to Bleeping Computer, malicious actors search for insecure servers exposed online, compromise them and leave a ransom note after copying the data from hacked servers.

Crooks are threatening to leak the content of the database if the victims don’t pay BTC 0.06 (approx. $534 at current price) in ten days. The ransom notes included several wallets that received more than 100 transactions for a total of BTC 5.8 ($51,633 at current price).

“The number of abuse reports for these two wallets is over 200, the oldest being from September 20, 2019. The most recent one is from May 20 and this month alone there were nine reports, indicating that the actor is highly active,” Bleeping Computer wrote.

The seller is offering 31 databases, more than half of which are from online shops in Germany, other compromised databases are from Brazil, the U.S., Italy, India, Spain, and Belarus. The hacked online shops were running Shopware, JTL-Shop, PrestaShop, OpenCart, Magento v1 and v2 e-commerce platforms.

The databases contain in total 1,620,000 rows, and depending on the store, the information includes email addresses, names, hashed passwords, postal addresses, gender, and dates of birth.

Back to the list

Latest Posts

Cyber Security Week in Review: May 10, 2024

Cyber Security Week in Review: May 10, 2024

In brief: Google fixes yet another Chrome 0Day, Dell suffers a data breach, the LockBit leader identified, and more.
10 May 2024
Massive BogusBazaar fraud ring steals credit cards from thousands of victims

Massive BogusBazaar fraud ring steals credit cards from thousands of victims

As of April 2024, approximately 22,500 domains were active.
9 May 2024
Poland’s government institutions targeted in Russian cyberespionage campaign

Poland’s government institutions targeted in Russian cyberespionage campaign

The incident marks the latest in a string of Russian cyberattacks aimed at NATO-allied nations supporting Ukraine.
9 May 2024