The campaign was analyzed by Sucuri, which observed the server side, and antivirus company Malwarebytes, whose researchers monitored the client side of the attack.
According to experts, the attackers compromised Magento websites and injected malicious scripts that create iframes from the “guruincsite.com” domain.
Read MoreSelect your language