Report URI operators serve different payloads based on where users are coming from, including Magecart skimmers and ClickFix lures.
Public source
Publisher name
Public post
Interesting to see these operators capitalising on their infrastructure by serving different payloads based on where you're coming from. Coming from an e-comm site, you…
Company
Report URI
Client-side security to control what code actually runs on your website.
- Industry
- IT Services and IT Consulting
- Location
- Clitheroe, GB
- Company size
- 2–10 employees
About Report URI
You control your website, but not everything running on it. Third-party code runs in your users’ browsers outside your control. It changes constantly. Most security tools don’t show you, because they’re built to protect your servers, not what actually executes in the browser. Report URI changes that. It gives you visibility into what’s running, control over what’s allowed, and the proof to show it’s working. Know what executes. Control what’s allowed. Prove it. https://report-uri.com/
See moreLatest activity
Latest activity from Report URI
7 signals
Security
Report URI reported a DOM XSS vulnerability in Material for MkDocs, the software behind its documentation site, which was exploited to collect evidence.
Legal & Regulatory
Report URI exposed data on 8.8 million people with no exploit, no malware, and no access to Manchester Airports Group servers.
Operations & Supply
Report URI completed a first attempt to download a weather satellite image using a 137.9 MHz Meteor-M N2-4 satellite with a dipole antenna at 120 degrees, a Raspberry Pi 4B, and a £40 USB dongle.
Discover more
Similar signals
Similar public activity from other companies.
Products & Services
X Cyber Group (XCyber®)
X Cyber Group (XCyber®) created scalable vector graphics (SVG) attachments disguised as voicemail files to smuggle obfuscated JavaScript.
Products & Services
PhishU
PhishU introduced new phishing-as-a-service reporting kits designed to hijack Microsoft 365 accounts with no password required and no MFA prompt.
Products & Services
CyberProof
CyberProof released TerminalFix, a ClickFix spinoff that uses fake Cloudflare CAPTCHAs to trick users into running PowerShell and setting up persistence, reconnaissance, and ongoing network access.
Research & Knowledge
Confiant Inc
Confiant Inc security engineer Roshan G analyzed HexMage, a Magecart campaign compromising legitimate e-commerce storefronts and stealing shoppers’ payment data at checkout.
Products & Services
Joe Security LLC