logo

Polyfill.io Supply Chain Attack Smacks Down 100K+ Websites

ID: 3c9c6b7b-e95a-5418-83c5-35c5af42c821

STIX ID: report--3c9c6b7b-e95a-5418-83c5-35c5af42c821

Feed Name: Dark Reading

Threat Score
80/100

Date Published: 2024-06-26

Date Updated: 2026-04-21

Author: Elizabeth Montalbano, Contributing Writer

...
...

Security researchers report that the cdn.polyfill.io domain—used by more than 100,000 websites—has been compromised to serve obfuscated, dynamically generated JavaScript payloads that activate selectively (based on headers and device), redirect users to porn and sports-betting sites, and could enable formjacking, clickjacking, and broader data theft. Owners are urged to immediately remove references to the CDN, use self-hosted or vetted alternatives, and scan codebases for the malicious domain.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.