StyleSmuggler recon: suspicious Magento customer/section/load request
Detects suspicious GET requests to the Magento '/customer/section/load/' endpoint with specific parameters ('sections=customer' and 'force_new_section_timestamp=true'). These requests are indicative of reconnaissance activity related to the StyleSmuggler campaign, potentially associated with exploitation of Magento vulnerabilities such as CVE-2025-54236.
Suricata

