Performance & Security

StyleSmuggler: the Magento implant built to survive your security check

A Rust remote access tool spreading through an unauthenticated RCE flaw in the Magento framework. It hides in cache directories, fakes its name in the process list, keeps spare copies in /tmp, and installs a backdoor that returns 404 to everyone but the attacker. Here is how to check your store.

Introducing WhizzyScan External: Free Malware & Vulnerability Scanning for Any Magento Store

Run a free security scan against any Magento store you have SSH access to - no signup, no account, just one curl command. Same detection engine we run nightly across our own fleet, now available to everyone.
Read more north_east
3 Items