Kevin Beaumont on Nostr: Can’t find my thread to update it, but after a Chinese company acquired Polyfill.io ...
Can’t find my thread to update it, but after a Chinese company acquired Polyfill.io last year (embedded in over 100k websites), it has started serving malware to users of said websites - prepare to be surprised.
https://sansec.io/research/polyfill-supply-chain-attack#threatintel
Published at
2024-06-25 20:20:48Event JSON
{
"id": "01e9f3c47a05492bd27a801a9da915d857e935be2c645b237be3d80cfd82cb6d",
"pubkey": "f6870afcde4480ec8508f50304859e14a51309ff24ab3f0f862c52bdc4af8747",
"created_at": 1719346848,
"kind": 1,
"tags": [
[
"t",
"threatintel"
],
[
"proxy",
"https://cyberplace.social/users/GossiTheDog/statuses/112679115075367631",
"activitypub"
]
],
"content": "Can’t find my thread to update it, but after a Chinese company acquired Polyfill.io last year (embedded in over 100k websites), it has started serving malware to users of said websites - prepare to be surprised. \n\nhttps://sansec.io/research/polyfill-supply-chain-attack\n\n#threatintel",
"sig": "92a7bf3e61f957df5aa4f6ed7a556f109e92cd143f63e6f2f91d2132a41fb60017a1953506950c071e676e02925e277b68d041645fab1d1c671925493efb8583"
}