Threat Advisories:
Highlights of Our CISO Dinner
Upgrading struggling vulnerability management programs to Threat Exposure Management, with Host, CISO Al Lindseth formerly from Plains All American Pipeline and PWC - 6 minute podcast
0:00
0:00
👥 Play Count: Loading...

Polyfill.io Supply Chain Attack: Widespread Compromise Affects Over 100,000 Websites

Threat Level – Red | Vulnerability Report
Download PDF

Summary:

A significant supply chain attack on the Polyfill.io JavaScript library, affecting over 100,000 websites. A Chinese company acquired the domain in February 2024 and embedded malicious code, redirecting users to harmful sites. Despite mitigation efforts, many websites remain compromised. The incident underscores the need for vigilant security practices in managing third-party dependencies.
 

Threat Level – Red | Attack Report

What’s new on HivePro

Get through updates and upcoming events, and more directly in your inbox