The ZDNet article cited information about threat actor infrastructure allegedly obtained from an FBI alert which was not authorized for public release. That information will not be repeated by Binary Defense, but we advise all operators of Magento Mass Import plugin to update immediately. The vulnerable version of the MAGMI plugin only works on Magento stores running the 1.X branch which is set to reach End-Of-Life (EOL) on June 30th, 2020. If possible, store owners should upgrade to version 2.X which will still receive updates. Upgrading MAGMI to version 0.7.23 will also fix the XSS vulnerability that gives attackers access to the store in the first place.