logo

Polyfill.io owner punches back at 'malicious defamation' amid domain shutdown

ID: dd06572e-1aa3-5801-9207-06d384e928e3

STIX ID: report--dd06572e-1aa3-5801-9207-06d384e928e3

Feed Name: The Register (Security)

Threat Score
85/100

Date Published: 2024-06-28

Date Updated: 2026-04-26

Author: Jessica Lyons

...
...

After the polyfill.io domain changed hands, security researchers and Cloudflare reported the CDN was used to inject malicious JavaScript into sites that loaded its scripts—potentially redirecting users; Sansec noted over 100,000 affected sites. Domain registrar Namecheap suspended polyfill.io, Cloudflare offered automatic URL rewriting to its mirror to mitigate the supply-chain risk, and the service later relaunched as polyfill.com which subsequently stopped resolving.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.