Blog

eCommerce Security - ThreatScape Report - September 2024

Benjamin Hosack
Oct 15, 2024
1 min read

Tags:

eCommerce
Web Security

Our September 2024 eCommerce ThreatScape Report is ready and here are a few of the highlights:

  • Portfolio: 16m+ websites.
  • Slight DECREASE in "hacked sites".
  • INCREASE of digital loader and digital skimmer malware.

Yes, we have seen a slight decrease (of 1.9%) in the number of hacked sites, BUT we are detecting MORE malware (2-3% growth over last month's record) - many sites are riddled with many different types of malware.  

And then, an interesting Top 5 most targeted platforms:

  1. Wordpress
  2. Magento 2
  3. Magento 1
  4. Shopify
  5. Prestashop

Here's the report:

eCommerce ThreatScape Report

What are the reasons for these sites getting hacked?

Most often it is down to simple website management and cyber security hygiene.  If you are doing the basics well, then your business is unlikely to fall victim - this is a numbers game and criminals are generally looking for an easy way to get their malware on as many sites as possible.

What are the BASICS for eCommerce Security?

We consider the BASICS for eCommerce security to be:

  • Multi-Factor Authentication for Admin accounts.
  • Patching - quickly.
  • Security monitoring and protection - stay proactive with understanding your website security.
  • Web Application Firewall.

We can help with security monitoring and protection - try our ThreatView solution for free here.

If your agency/hosting provider is unable to help you with 1, 2 and 4, then please get in touch - we have a growing partner network of agencies and hosting providers who understand and prioritise security https://www.turacolabs.com/partners.

And if you are an agency/hosting provider looking to get proactive with security, please get in touch! https://www.turacolabs.com/agency-hosting

eCommerce ThreatScape Report SEPTEMBER 2024.pdf

Download PDF • 12.18MB

.

Read Other Blog Articles

Digital Skimmer Targeting Is Shifting: What the Last 3 Months Tell Us

Turaco Labs
June 17, 2026
3 mins
eCommerce
Malware
Web Security

Over the last three months, the digital skimmer landscape has changed noticeably. Based on the latest ThreatView charts, Magento 2 remains the most targeted platform, but the biggest movement is elsewhere: Shopify has risen sharply and now appears to be the second most targeted platform for digital skimmers.

PrestaShop Attacks Are Escalating - What We’re Seeing and What Merchants Should Do Now

Turaco Labs
June 3, 2026
4 mins
eCommerce
Cybersecurity
Malware

In February 2026, we detected 327 compromised PrestaShop websites running card-harvesting malware loaders or digital skimmer malware. By the beginning of June 2026, that number had risen to 1,068. This is an active, expanding campaign affecting a growing number of merchants.

PolyShell and Magento: what merchants should do now

Turaco Labs
25 March 2026
4 mins
eCommerce
Magento
Malware
Web Security

A practical guide for Magento and Adobe Commerce merchants dealing with PolyShell: what it is, how to detect compromise, how ThreatView helps, and what to do next.

Proudly, designed, developed and maintained by Tecbot.