Owner change of the Polyfill library led to the injection of malicious code on 110,000 sites
Over 110,000 sites using the open-source JavaScript library Polyfill for compatibility with older browser versions became victims of malicious changes made to the library's code by the new owner of the project. Malicious code was embedded into the library, which is loaded on sites via the domain cdn.polyfill.io, redirecting users to fraudulent websites (such as googie-anaiytics.com), betting companies, and online casinos. The Polyfill project was sold in February […]
