Magento Mayhem: Backdoored Extensions Haunt E-Commerce Giants After 6-Year Snooze

Magento extensions are backdoored, and it’s like a surprise party, but for cybercriminals! After hiding for six years, malicious code finally activated, compromising up to 1,000 e-commerce stores, including a $40 billion multinational. Sansec researchers detected the dormant threat, proving that patience isn’t just a virtue—it’s a hacker’s best friend!

Pro Dashboard

Hot Take:

In a plot twist worthy of a cybersecurity thriller, Magento extensions have been caught snoozing on the job, only to wake up in 2025 and wreak havoc on e-commerce stores like a teenager left unsupervised at a party. Remember folks, it’s all fun and games until someone gets their data stolen!

Key Points:

– 21 Magento extensions have been found with a backdoor, affecting 500-1,000 e-commerce stores.
– The malicious code was injected as far back as 2019 but only activated in April 2025.
– Notable affected vendors include Tigren, Meetanshi, and MGS, with Sansec warning them of the breach.
– The backdoor allows for malicious activities like data theft and creating admin accounts.
– Users are advised to scan their servers for compromises and restore from clean backups if necessary.

Membership Required

 You must be a member to access this content.

View Membership Levels
Already a member? Log in here
The Nimble Nerd
Confessional Booth of Our Digital Sins

Okay, deep breath, let's get this over with. In the grand act of digital self-sabotage, we've littered this site with cookies. Yep, we did that. Why? So your highness can have a 'premium' experience or whatever. These traitorous cookies hide in your browser, eagerly waiting to welcome you back like a guilty dog that's just chewed your favorite shoe. And, if that's not enough, they also tattle on which parts of our sad little corner of the web you obsess over. Feels dirty, doesn't it?