Parasite SEO on steroids

Tony Soprano

Junior Member
Joined
Sep 28, 2022
Messages
104
Reaction score
89
Hey guys,
I’ve been digging around and I noticed something strange that might be worth discussing.


I found a parasite method being used across several websites, and all of them have the exact same setup:


  • They’re all using a Shopify blog
  • The blog language is set to Dutch
  • The structure, layout, and approach look almost identical
  • The niches they target seem random but could realistically be run by a single person

I’ll drop 2–3 links as examples:

https://building.law.uchicago.edu/blogs/news
https://ampas-store.oscars.org/blogs/news
https://pt.store.tp-link.com/blogs/news/

What I’m trying to figure out is:


Is he buying access? Using some service? Something else?


 
Hey guys,
I’ve been digging around and I noticed something strange that might be worth discussing.


I found a parasite method being used across several websites, and all of them have the exact same setup:


  • They’re all using a Shopify blog
  • The blog language is set to Dutch
  • The structure, layout, and approach look almost identical
  • The niches they target seem random but could realistically be run by a single person

I’ll drop 2–3 links as examples:

https://building.law.uchicago.edu/blogs/news
https://ampas-store.oscars.org/blogs/news
https://pt.store.tp-link.com/blogs/news/

What I’m trying to figure out is:


Is he buying access? Using some service? Something else?
There’s two options. Buying, or not buying. We aren’t supposed to talk about THAT KIND of black hat stuff.
 
Using subdomains, it looks like they're trying to impersonate Shopify.
 
Another big find.

I think someone is making big by hacking these big sites...very clever and bastard.
 
This is a known exploit targeting a specific Shopify API vulnerability related to unsecured or abandoned partner development stores. These stores are often created for testing by agencies and left active. Attackers find them via subdomain enumeration or leaked credentials, then repurpose the blog section.

The Dutch language is a tell. It's often used to avoid automated English content moderation filters. Dutch content is less likely to be flagged by generic spam detection systems initially, buying time for the pages to rank.

The structure is identical because they're using an automated script that mass-posts to any compromised Shopify storefront using the same template. The random niches (law, oscars, tech) confirm it's opportunistic hacking, not a targeted niche strategy.

If you're investigating, look for the myshopify .com subdomain in the DNS records of the main domain. Many of these hacked sites are actually proxied through the main domain while the content is hosted on a compromised Shopify partner store. That's how they get the authority link juice.
 
The pdf method is saturated. Whenever a new domain shows up, there are thousands of marketers competing to take their share. So, the top players moved to subdomain hijacking. They just find abandoned subdomains and link their content. The Shopify thing is just a free host like 5-6 others. It's not actually a part of the strategy but a resource. The real method is to find subdomains and use them to publish CPA content.
 
The pdf method is saturated. Whenever a new domain shows up, there are thousands of marketers competing to take their share. So, the top players moved to subdomain hijacking. They just find abandoned subdomains and link their content. The Shopify thing is just a free host like 5-6 others. It's not actually a part of the strategy but a resource. The real method is to find subdomains and use them to publish CPA content.
I actually created a script that looks for expired Shopify domains on high-authority websites. I scanned 500 domains yesterday and found a .edu domain with an old Shopify subdomain linked to Shopify with dns. The Shopify store had been removed, but when I added that domain in my account, I had to verify ownership using a DNS TXT record.

I think verification is only required for .edu domains, because I was able to add my old domain (.com) to Shopify without verification.
 
I actually created a script that looks for expired Shopify domains on high-authority websites. I scanned 500 domains yesterday and found a .edu domain with an old Shopify subdomain linked to Shopify with dns. The Shopify store had been removed, but when I added that domain in my account, I had to verify ownership using a DNS TXT record.

I think verification is only required for .edu domains, because I was able to add my old domain (.com) to Shopify without verification.
GOOD LUCK hahahahhahah
 
this contents are in English language
why people talking about Dutch??
 
Back
Top