Polyfill.io Supply Chain Attack Smacks Down 100K+ Websites
ID: 3c9c6b7b-e95a-5418-83c5-35c5af42c821
STIX ID: report--3c9c6b7b-e95a-5418-83c5-35c5af42c821
Feed Name: Dark Reading
Date Published: 2024-06-26
Date Updated: 2026-04-21
Author: Elizabeth Montalbano, Contributing Writer
Security researchers report that the cdn.polyfill.io domain—used by more than 100,000 websites—has been compromised to serve obfuscated, dynamically generated JavaScript payloads that activate selectively (based on headers and device), redirect users to porn and sports-betting sites, and could enable formjacking, clickjacking, and broader data theft. Owners are urged to immediately remove references to the CDN, use self-hosted or vetted alternatives, and scan codebases for the malicious domain.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
