Malicious entities have been detected utilizing Google Tag Manager (GTM) to deploy credit card skimmer malware aimed at Magento-driven e-commerce platforms.
The web security firm Sucuri reported that the script, although resembling a standard GTM and Google Analytics code intended for website metrics and promotional objectives, conceals an encrypted backdoor that can grant perpetrators enduring access.
