The Malware That Stole Christmas
November 18, 2015
by Chemi Katz
Good news, Internet retailers – This holiday season is expected to be the biggest ever. The National Retail Federation is forecasting over $105 billion in online sales this year, with increases greater than we’ve seen in the past 10 years.
But there’s a Grinch waiting to steal all of your presents, and its name is CSIM or Client-Side Injected Malware.
CSIM’s threats are forcing websites around the Internet to take a different approach than ever before when it comes to protecting themselves. In the past, making certain that your site was hosted with a reputable provider, using all standard security practices would make certain that your customers’ experiences were the best that they could be. But the world of digital threats have changed, and CSIM is one of the most nefarious.
Let’s break down what we’re looking at with CSIM to help you gain a better understanding of the problem:
- Client-Side – The threat doesn’t come from your server, but rather from the device that the customer is using.
- Injected – Most customers have no idea that they’ve been infected.
- Malware – Competitor’s products, incorrectly-displayed sites and spyware traps.
For all of the protections that we have in place, the Internet’s threats are more robust than ever before. CSIM’s dangers are real and its effects are already being felt by retailers who haven’t protected themselves. In our studies of sites that have fallen victim to CSIM, here’s what we’ve seen:
Unexplained Traffic Loss
One of the great dangers of CSIM is that it can redirect traffic while still making it look like a visitor is on your site. In the most elaborate of cases, “clones” of a retailer’s site can be designed, making it even harder for a shopper to realize that there is a problem.
Theft of Information
You’ve put significant work into optimizing your customer experience. But a CSIM attack can not only ruin that experience by changing parts of it, it can also steal customer information in the process.
“Oh I used to go to XYZ.com but now they have tasteless ads everywhere!” In many cases, CSIM relies on injecting unapproved or otherwise offensive ads into your site via the customer’s device and unfortunately ad blocking is not enough to stop the threat.
The threats produced by CSIM are very real, with somewhere between 15 and 30 percent of your users being impacted every single day. Fortunately, there is a solution.
With just a single line of code, Namogoo goes to work for you to make certain that your site is displayed exactly as you have intended. Using machine learning, we spot problems as they happen and prevent the catastrophic effects of CSIM.
You’ve worked far too hard to make sure that you’re getting your slice of the holiday pie. Don’t let CSIM take it away from you.