Toutes les vulnérabilités
HIGHSupply chainexploited in the wild

SC-POLYFILL-IO-2024

CDN · polyfill.io

Résumé

In February 2024 a Chinese company, Funnull, acquired the polyfill.io domain and its associated GitHub account from the original maintainer. After the takeover the cdn.polyfill.io CDN began injecting malicious JavaScript into the more than 100,000 websites that embedded its scripts. The injected code activated selectively to evade detection and redirected mobile visitors to scam and sports-betting sites via a fake Google Analytics domain. Cloudflare deployed real-time rewrites and Namecheap suspended the domain.

Références

Vulnérabilités liées

Tout Supply chain →