Feeds.Feedburner North Korean-Linked Polyfill Supply Chain Attack Affects 100,000 Websites
Article Content
- •Approximately 100,000 websites affected by a supply chain attack linked to North Korea.
- •Attack initially attributed to China but later reassessed due to new evidence.
- •Exploitation of polyfill libraries allowed for injection of malicious code.
A significant supply chain attack has been linked to North Korean actors, impacting approximately 100,000 websites. Initially attributed to China, the incident was re-evaluated following the discovery of an infostealer infection. The attack exploited vulnerabilities in polyfill libraries, allowing attackers to inject malicious code into affected sites. The scope of the impact is extensive, with numerous organizations and users potentially exposed to data theft and further exploitation. The attack vector utilized compromised libraries that are widely used in web development. Security teams are currently assessing the damage and implementing measures to mitigate further risks. Ongoing investigations are focusing on the specific tools and methods employed by the attackers. As of now, remediation efforts are underway, but the full extent of the breach is still being determined.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (1)
Continue Reading
Critical Cisco FMC Vulnerabilities Under Active Exploitation Cisco's Secure Firewall Management Center (FMC) Software has two critical vulnerabilities, CVE-2026-20079 and CVE-2026-20316, that are currently being exploited by state-sponsored and ransomware actors. CVE-2026-20079, rated 10.0 on the CVSS scale, allows unauthenticated remote attackers to bypass authentication and…
BlueMoon Exploit Kit Targeting Chrome and Windows by Multiple State Actors A new exploit kit named BlueMoon has been rapidly adopted by at least four espionage groups, primarily linked to China, exploiting vulnerabilities in Google Chrome and Microsoft Windows. The first observed use of BlueMoon was on August 28, 2026, by the China-aligned threat actor TA412, with subsequent adoption by…