Blog

eCommerce Security - ThreatScape Report - October 2024

Benjamin Hosack
Nov 11, 2024
2 min read

Tags:

eCommerce
Web Security

Our October 2024 eCommerce Security ThreatScape Report is ready and here are a few of the highlights:

  • Portfolio: 16m+ websites.
  • "Hacked sites" surge past 27,000 again
  • Continued GROWTH of digital loader and digital skimmer malware.

Last month saw a slight decrease in the number of hacked sites detected across our portfolio, but that changed again this month, with the number of hacked sites surging up to 27,884.

The Top 5 most targeted platforms is slowly evolving, but the usual targets remain at the top:

  1. Wordpress
  2. Magento 2
  3. Magento 1
  4. Shopify
  5. Prestashop

Here's the report:

eCommerce Security - ThreatScape Report

What are the reasons for these platforms getting targeted?

We find that most often, the sites that get targeted by criminals are those sites that are missing some of the basic fundamentals of good cyber security hygiene.  

Conversely, it is rare to see an online business getting compromised by criminals when they are doing the basics well.  This is a numbers game for the criminals - they are generally looking for an easy way to get their malware on as many sites as possible.

What are the BASICS for eCommerce Security?

We consider the BASICS to be:

  1. Multi-Factor Authentication for Admin accounts.
  2. Patching - quickly.
  3. Security monitoring and protection - stay proactive with understanding your website security.
  4. Web Application Firewall.

We can help with security monitoring and protection - try our ThreatView solution for free here.

If your agency/hosting provider is unable to help you with 1, 2 and 4, then please get in touch - we have a growing partner network of agencies and hosting providers who understand and prioritise security https://www.turacolabs.com/partners.

And if you are an agency/hosting provider looking to get proactive with security, please get in touch! https://www.turacolabs.com/agency-hosting

eCommerce ThreatScape - October 2024.pdf

Download PDF • 8.66MB

.

Read Other Blog Articles

PCI DSS & Protecting The eCommerce Payment Ecosystem

Benjamin Hosack
November 11,2025
5 min read
eCommerce
Web Security
Cybersecurity

eCommerce businesses are facing a rapidly growing threat, targeting their payment data. This has been documented in our ThreatScape Reports over the years - and the most telling number for us is the total number of hacked sites we detect each time we conduct a global scan for threats across our portfolio - this morning's result reported over 48,000 sites detected with malware.

Magento & Adobe Commerce Facing Major Attack Surge: SessionReaper

Benjamin Hosack
5 days ago
2 min read
eCommerce
Magento
Web Security

Magento 2 and Adobe Commerce users are currently dealing with a critical security crisis: the SessionReaper...

MirrorMask: a tiny code change that silently skims checkout data

Benjamin Hosack
Aug 15
5 min read
Indicators of Compromise

At Turaco Labs, we have identified a live digital skimmer (e-skimmer) that hijacks Stripe...

Proudly, designed, developed and maintained by Tecbot.