CosmicSting, admin auth bypass, Magecart skimmer, REST API abuse
Fingerprint Magento via /static/, Mage_Cookies, admin path, Magento_Ui asset paths.
Test for the 2024 XXE→RCE chain (pre-2.4.7-p1 → remote code execution).
Enumerate /admin, probe REST customer endpoints, test magescan exploits.
Scan checkout for Magecart skimmer DOM patterns + external JS risk.
€109
Any tier · One-time per scan
18 specialized tests + AI-powered analysis
Start Your ScanSelect this addon when configuring your scan