Source |
The Hacker News |
Identifiant |
8530935 |
Date de publication |
2024-07-05 09:48:00 (vue: 2024-07-05 05:07:05) |
Titre |
Polyfill [.] Les attaques IO ont un impact sur 380 000 hôtes, y compris les grandes entreprises Polyfill[.]io Attack Impacts Over 380,000 Hosts, Including Major Companies |
Texte |
L'attaque de la chaîne d'approvisionnement ciblant les polyfills largement utilisés [.] La bibliothèque JavaScript Io est plus large que ce que l'on ne le pensait, avec de nouvelles découvertes de Censys montrant que plus de 380 000 hôtes incorporent un script polyfill reliant au domaine malveillant au 2 juillet 2024.
Cela comprend des références à "https: //cdn.polyfill [.] Io" ou "https: //cdn.polyfill [.] Com" dans leurs réponses http, l'attaque
The supply chain attack targeting widely-used Polyfill[.]io JavaScript library is wider in scope than previously thought, with new findings from Censys showing that over 380,000 hosts are embedding a polyfill script linking to the malicious domain as of July 2, 2024.
This includes references to "https://cdn.polyfill[.]io" or "https://cdn.polyfill[.]com" in their HTTP responses, the attack |
Notes |
★★★
|
Envoyé |
Oui |
Condensat |
000 2024 380 are attack censys chain com companies domain embedding findings from hosts http https://cdn impacts includes including javascript july library linking major malicious new over polyfill previously references responses scope script showing supply targeting than thought used widely wider |
Tags |
|
Stories |
|
Move |
|