Forgive me if I missed this posted earlier.
Ticketmaster UK's payment page had been breached for months. Or more specifically, a third party JavaScript library they used was breached, allowing criminals to log the credit cards of victims.
https://security.ticketmaster.co.uk
Devs: host all the JS assets you can yourself. Use content security policies and research your vendors thoroughly when you can't.