SecOpsNews / news

RSS items as GitHub Issues for the discerning engineering leader or security professional
MIT License
30 stars 0 forks source link

[HackerNews] Polyfill[.]io Attack Impacts Over 380,000 Hosts, Including Major Companies #30733

Open github-actions[bot] opened 1 week ago

github-actions[bot] commented 1 week ago

The supply chain attack targeting widely-used Polyfill[.]io JavaScript library is wider in scope than previously thought, with new findings from Censys showing that over 380,000 hosts are embedding a polyfill script linking to the malicious domain as of July 2, 2024. This includes references to "https://cdn.polyfill\[.\]io" or "https://cdn.polyfill\[.\]com" in their HTTP responses, the attack

https://thehackernews.com/2024/07/polyfillio-attack-impacts-over-380000.html