Campaigns
Malicious AI Agents Steal 600K Credit Cards, Infect 100+ Sites with Skimmers

Malicious AI Agents Steal 600K Credit Cards, Infect 100+ Sites with Skimmers Threat Campaign

AI AgentsCredit Card SkimmerWeb SkimmingAgentic AIFinancial Fraud
A financially motivated threat actor is using open-source AI agent frameworks to attack hundreds of online retailers at scale, stealing more than 600,000 credit card records. The campaign has been active since at least July and is ongoing as of 22.09.2026, with the attacker compromising at least 119 websites with credit card skimmers. Three AI tools - Strix, Cairn, and Hermes - power the attack chain, enabling autonomous exploitation, orchestration, and post-exploitation work against tens of companies every day.

Indicators of Compromise

js-static.com
medbooksource.com
b8t.shop
x1opay.co
newssjs.com
jsnetlify.com
traffic-analyzer.net
static-js.com
netlifyjs.com
cdn.js-static.com
cdn.netlfjs.com

Campaign Guidance

Remediation, mitigation, notes, history and related intelligence

REMEDIATION

DETECTION

Technique ID

Technique Name

Detection Strategy

T1595

Active Scanning

Monitor for reconnaissance-style traffic patterns and repeated automated requests probing web applications from a small set of source IPs/ASNs ahead of exploitation attempts.

T1190

Exploit Public-Facing Application

Monitor web server and application logs for anomalous request patterns, spikes in 4xx/5xx errors, or unexpected process spawns (webshell-like behavior) from the web/application server process following inbound requests.

T1059

Command and Scripting Interpreter

Detect execution of scripting or command interpreters (e.g., shell, PHP eval, Node.js child_process) from web application contexts that do not normally spawn interpreters, especially with obfuscated or encoded arguments.

T1053

Scheduled Task/Job

Monitor for creation or modification of cron jobs or scheduled tasks on web/application servers, particularly ones that periodically re-write or restore files - consistent with the cron-based skimmer restoration observed in this campaign.

T1070

Indicator Removal

Monitor for bulk deletion or modification of database fields (e.g., stored card data) shortly after unusual outbound data transfer, consistent with the post-exfiltration cleanup routine observed in this campaign.

T1485

Data Destruction

Monitor for mass field-level data wiping or overwrite operations in transaction/database tables that do not correspond to legitimate application workflows.

Observed Countries1

US (124)