Researchers from cybersecurity firm Malwarebytes have analyzed a new evasive phishing technique used by attackers in the wild in Magecart attacks. The hackers targeted visitors of several sites using typo-squatted domain names, and modified favicons to inject software skimmers used to steal payment card information. One of the fraudulent domains (zoplm.com) involved in this type of attack has been previously tied to Magecart Group 8, the crew that was behind the attacks on NutriBullet, and MyPillow.com.”]
Source: https://securityaffairs.co/wordpress/106916/hacking/homoglyph-attacks-phishing-campaign.html