How to defend
Common characteristics among all payment card skimmers include the presence of base64-encoded strings and the "atob()" JavaScript function on compromised webpages.
Apart from active scanning and detection, website administrators should ensure they're running the latest available version of their content management system (CMS) and plugins.
From the customers' perspective, minimizing the damage of skimmers is only possible by using one-time private cards, setting strict payment limits, or using electronic payment methods instead.