Hackers have infected 7,339 Magento stores with a skimmer script, dubbed MagentoCore, that siphons payment card data from users who purchased on the sites. The malicious script loads on store checkout pages and steals payment card details provided by the users and sends it to a server controlled by the attacker. The campaign is still ongoing and hackers are compromising new Magento sites at a pace of 50 to 60 sites per day. 4.2% of all Magentocore stores are infected with one or more skimmer scripts, Willem de Groot says.”]
Source: https://securityaffairs.co/wordpress/75812/cyber-crime/magentocore-campaign.html