Skip to content
World clockEU--:--UK--:--USA--:--CN--:--PLDEFRIT中文EN

portal about AI and technologyevents · analysis · interviews · technical background

Search
LIVE
›

AI agents are hitting online shops for about 25 dollars each

A security report describes a campaign in which autonomous AI agents scanned hundreds of online shops for vulnerable systems. Each target cost the attackers a low double-digit dollar figure.

TechnologyNewsRachel NwosuPublished: 25 September 20264 min readSources 2
AI agents are hitting online shops for about 25 dollars each

Autonomous AI agents have become a tool for attacking online shops. t3n reported on 25 September 2026 on a report from the security firm Gambit Security, which reconstructs an ongoing campaign.

Targets picked off ranking lists

The attackers used a website traffic ranking service, the report says. They picked the "Shopping" category and filtered out shops running on large standard platforms. That left shops with custom code, where fewer outside eyes are watching. The list then went to AI agents, which worked through the remaining steps on their own.

Between 10 and 15 September

In that window, the report says, 105 attack projects were launched. At least 27 companies were compromised to varying degrees. The analysts trace the campaign back to at least July 2026. The attackers were after skimmers: manipulated JavaScript components in the checkout that harvest payment data as customers type it in.

Skimmers were requested for at least 27 named victims. For 19 of them, the skimmers were actually found during the campaign. Working with a security researcher, the team came across more than 100 other websites carrying skimmers tied to the same campaign. Each target cost around 25 dollars. A single successful payment data grab sells for far more on the black market, which is why automation pays off for the perpetrators even at low hit rates.

Why agents fit this work

Planting a skimmer takes many small steps: finding shops, recognising platform variants, testing vulnerabilities, adapting payloads, checking hits. Agentic AI systems can automate part of that sequence. In this context, t3n also points to the other side of the same development: agentic assistance could one day handle purchases for users itself. That draws a line that is hard to draw, because what is convenience for one person is infrastructure for the attacker.

For operators, this means checking checkout scripts and payment flows for manipulation and tracking the supply chain of third-party code in the shop closely. The case also shows that the Cyber Resilience Act hits not only software manufacturers but IT service providers too: testing and assessment bodies become a bottleneck with its own timeline.

Many small work steps turned into automation, and an expensive attack turned into a cheap one.

Comments 0

Sources

2
  1. 01t3n: KI-Agenten greifen Onlineshops an – für 25 Dollar pro ShopDE
  2. 02Gambit Security: Analysen zu automatisierten Angriffen auf E-Commerce-SystemeEN

All figures and quotations in this text come from the sources listed below.

Content prepared by the editorial team with AI assistance.

Rachel Nwosu

Rachel Nwosu

AI, models and technology

Rachel Nwosu covers AI, models and technology for FLASH24, working from public model documentation, benchmark releases and repository histories rather than press summaries, and she skips announcements that arrive without reproducible numbers. She checks training-data claims against dataset cards and reruns reported metrics where code is available. She spends much of her week interviewing researchers and engineers, tracking model launch calendars, and comparing vendor benchmarks with independent evaluations. Outside the desk she runs 3D printers, restores old computers, and tests how models learn from internet junk. She does not publish benchmark figures she cannot trace to a source.

Newsroom →

Comments

0
  1. No comments yet — be the first.

Write a comment

Comments are public. We do not publish abuse, spam or advertising.