What is it about?

Have you ever found an online shop offering products at suspiciously low prices? It might be a fake e-commerce site created by cybercriminals. Our research investigates how criminal groups use malware—malicious software that infects computers—to build and operate massive networks of fraudulent online stores targeting Japanese consumers. We analyzed 2,852 command and control servers associated with 10 different malware families and discovered 697,816 fake e-commerce websites connected to these servers. By examining the relationships between these malware families and fraudulent sites, we identified how different criminal groups collaborate and share infrastructure to conduct large-scale fraud operations. Our findings reveal the hidden connections between malware operators and fake shop networks, providing valuable insights for cybersecurity professionals and law enforcement working to protect consumers from online fraud.

Featured Image

Why is it important?

Online shopping fraud causes significant financial losses to consumers worldwide. Japan has seen a surge in fake e-commerce sites that steal money and personal information from unsuspecting shoppers. Despite the scale of this problem, little research has explored how these fraudulent operations are organized and connected. Our study is the first to reveal the infrastructure-level relationships between malware families and fake e-commerce networks targeting a specific country. By mapping these connections, we provide actionable intelligence that can help security researchers, e-commerce platforms, and law enforcement agencies disrupt these criminal operations more effectively.

Perspectives

This research emerged from a collaboration between academia and industry security experts at Trend Micro. Combining academic rigor with real-world threat intelligence allowed us to uncover patterns that neither could have identified alone. We hope this work demonstrates the value of such partnerships in tackling cybercrime.

Masaki Hashimoto
Kagawa University

Read the Original

This page is a summary of: Malware-Facilitated E-commerce Fraud: A Link Analysis of Black-hat SEO based E-commerce Fraud Actor Groups targeting Japan, Digital Threats Research and Practice, March 2026, ACM (Association for Computing Machinery),
DOI: 10.1145/3805707.
You can read the full text:

Read

Contributors

The following have contributed to this page