Many organisations see outsourced payment models as the holy grail of secure payments. Surely, if your website doesn't touch personal identifiable information (PII) and cardholder data, then you shouldn't worry about your customers' details being stolen... right? 

Lately, our forensic team have witnessed some alarming attacks, that bypass iFrame and redirect models. 

These cases feature Man in The Middle (MITM) attacks - which intercept the payment page and replace it with their own, malicious version of the page. 

Even if you believe your customers' details are safe in the hands of someone else, you shouldn't neglect your own website security.