Polyfill supply chain attack embeds malware in JavaScript CDN assets
CYBERSECURITY FEATURED ANALYSIS

Polyfill supply chain attack embeds malware in JavaScript CDN assets

SOURCE

Blog RSS Feed | Snyk

DATE

READ

1 min read

On June 25, 2024, the Sansec security research and malware team announced that a popular JavaScript polyfill project had been taken over by a foreign actor identified as a Chinese-originated company.

On June 25, 2024, the Sansec security research and malware team announced that a popular JavaScript polyfill project had been taken over by a foreign actor identified as a Chinese-originated company.