CosmicSting attacks have started hitting major stores
API AbuseAs CosmicSting enables attackers to read any file, attackers can steal Magento’s secret encryption key. This encryption key can generate JSON Web Tokens with full administrative API acces…