Menu
Browse

PEX Superstore

Aliases 2 aliases
Primary URL Location Industry
pexsuperstore[.]com
Country United States of America
Retail Icon
Retail
Profile

PEXSuperstore.com, also known as PEX Superstore, is an online retail business headquartered in the United States of America. The company operates a consumer‑facing e‑commerce website where customers can browse and purchase products. Its primary sales channel is the PEXSuperstore.com domain. The site is built on the Magento e‑commerce platform, a widely used open‑source solution for online stores. Through this platform the organisation manages product listings, shopping cart functionality, and checkout processes.

In November 2019 PEXSuperstore.com was the target of a simultaneous compromise by two distinct Magecart groups, an event that highlighted specific security attributes of the organisation. During the attack each group injected its own malicious skimming script into the website’s code, one disguising its payload as a Google Analytics script and the other directly altering the checkout script. Both skimmers operated concurrently, exfiltrating payment card details and personally identifiable information without the attackers’ apparent awareness of each other. The incident underscored the organisation’s exposure to client‑side web‑skimming threats that exploit vulnerabilities in Magento‑based sites. It also demonstrated how opportunistic cybercrime groups can independently target the same e‑commerce platform using different techniques.

Incidents
Linked incidents available to members
1 incident