logo

Polyfill claims it has been 'defamed', returns after domain shut down

ID: 8a573d99-1f03-5885-8aa8-dcf02fcc275f

STIX ID: report--8a573d99-1f03-5885-8aa8-dcf02fcc275f

Feed Name: Bleeping Computer

Threat Score
80/100

Date Published: 2024-06-27

Date Updated: 2026-04-20

Author: Ax Sharma

...
...

Executive summary: A compromised third‑party CDN (polyfill.io) was used to deliver malicious JavaScript to websites embedding its scripts, redirecting visitors (notably mobile users) to fraudulent sites and impacting over 100,000 websites; Cloudflare and Google have raised concerns and providers and researchers recommend removing cdn.polyfill.io (and the relaunched polyfill.com) from sites and replacing it with trusted alternatives.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.