Country visual unavailable
No information
The ESA Space Shop, operated by Olly Services rather than hosted or managed by the European Space Agency, was compromised with malicious JavaScript that inserted a fake Stripe payment page into the checkout flow. ESA confirmed that Olly Services ran the shop as Data Controller and that the externally hosted site was temporarily suspended while technical teams addressed the incident. The compromise therefore affected the operator's online sales and order-processing flow rather than ESA's internal infrastructure.
Estimated severity
67 / 100
Source reliability
87 / 100
Approximate Date
23/12/2024
Targeted Company
OLLY SERVICES
Distribution & Fulfillment
Procurement & Sourcing
Production & Manufacturing
Sales (Retail & Ecommerce)
Warehousing
Service Delivery
Unrecognized Impact
Supply Chain Relations
No information
Country visual unavailable
No information
No other affected countries reported
Target country
No information
Affected countries
No information
Impacted regions
No information
Duration
No information
Financial impact (USD M)
No information
Impact types
Affected sectors
Affected departments
Attack types
Attributed threat actors
No information
Please rotate your phone