Originally published in June 2024PCI DSS 4.0.1 was released on June 11th, 2024.It’s a limited revision that aims to correct small typographical errors and make clarifications. However, sometimes such clarifications…
Recently, Turaco Labs detailed a silent skimming attack that used a proxy to silently skim payment card data from Stripe’s iframe solution. Theirs is a great analysis of the attack,…
On 28 February 2025, the PCI SSC released FAQ 1588 to clarify the new eligibility criterion in SAQ A for e-commerce merchants. In particular, the FAQ aims to clarify how…
Preventing skimming attacks is one of the reasons behind the newest version of PCI DSS. E-commerce skimming, also known as form-jacking or Magecart attacks, represents the majority of criminal attacks…