Over 14000 customers Impacted with the BevMo Payment Card Breach

BevMo Payment Card Breach impacted more than 14000 customers, attackers injected skimmer scripts into the checkout page of the website.

The injected skimmer scripts record keystrokes from customers and transfer the data to the attacker’s server.

Attackers stolen data includes customer names, phone numbers, addresses and credit, and debit card numbers along with security codes.

BevMo said the attackers placed the skimmer scripts between Aug.2 and Sept.26 and the company has notified the California attorney general’s office about the breach.

Now the wine and liquor company announced that they have removed the malicious script from the website checkout page and the investigation still in progress.

As we know hackers are determined and they spent huge time with an organization to find the network structure and they will infiltrate the best way.

Last month Amazon suffered a data breach before the Black Friday, the number of customers names and Email address has been exposed.

Recent Breaches

120 Million Unique Taxpayer ID Numbers Exposed Online From Misconfigured Servers

66 Million Users Personal Data Exposed From Unprotected MongoDB Database

Quora Hacked – 100 Million User’s Data Stolen By Hackers

Hackers Stolen 500 Million Guests Personal Information From Starwood Hotels Guest Reservation Database

AddThis Website Tools
Gurubaran

Gurubaran is a co-founder of Cyber Security News and GBHackers On Security. He has 10+ years of experience as a Security Consultant, Editor, and Analyst in cybersecurity, technology, and communications.

Recent Posts

CefSharp Enumeration Tool Identifies Critical Security Issues in .NET Desktop Applications

Cybersecurity researchers and red teamers, a newly released tool named CefEnum is shedding light on…

8 hours ago

Russian Hackers Exploit Oracle Cloud Infrastructure to Target Scaleway Object Storage

Russian threat actors have been leveraging trusted cloud infrastructure platforms like Oracle Cloud Infrastructure (OCI)…

8 hours ago

Critical Vulnerability in Netwrix Password Manager Enables Authenticated Remote Code Execution

A critical security vulnerability has been discovered in Netwrix Password Secure, a widely used enterprise…

8 hours ago

Cityworks Zero-Day Vulnerability Used by UAT-638 Hackers to Infect IIS Servers with Shell Malware

Cisco Talos has uncovered active exploitation of a zero-day remote-code-execution vulnerability, identified as CVE-2025-0994, in…

10 hours ago

Researchers Warn of ‘Smiao Network’ Cyber Threat Against Taiwan’s Federal Staff

The Foundation for Defense of Democracies (FDD) and cybersecurity firm TeamT5 has exposed an intricate…

10 hours ago

Vidar and StealC Malware Delivered Through Viral TikTok Videos by Hackers

A sophisticated social engineering campaign that leverages the viral power of TikTok to distribute dangerous…

10 hours ago