China-linked hackers spoof big-name brand websites to steal shoppers’ payment info

In Data Breach News, Consumer Alerts
July 03, 2025

If you shop online, be aware of this massive campaign using spoofed websites. The Record reports:

Researchers have uncovered a sprawling network of fraudulent retail websites impersonating major global brands in an effort to steal payment data from online shoppers.

The campaign, which has been active for months, uses thousands of phishing websites that mimic the design and product listings of well-known retailers — including Apple, PayPal, Nordstrom, Hermes, and Michael Kors — to trick users into entering their credit card information.

The scheme was first flagged in May by Mexican journalist Ignacio Gómez Villaseñor during the country’s national sales week. 

Read more at The Record.