Polyfill.io Plunge: 100,000 Sites Infected by Malware in Shocking Supply Chain Attack

“Polyfill.io, once a savior for outdated browsers, is now a malware hub infecting over 100,000 websites. After being acquired by a Chinese organization, the domain is spreading malicious code, prompting security experts to urge immediate removal of its JavaScript. Trust shattered, malware scattered!”

Hot Take:

**_Remember when you could trust JavaScript libraries to just polyfill your code and not your nightmares? Well, those days are over. Welcome to the new reality where your once-friendly polyfill.io is now poly-filling your site with malware. Talk about a hostile takeover._**

Key Points:

– Polyfill.io was bought by a Chinese organization earlier this year and is now spreading malware to over 100,000 websites.
– Security firms are urgently advising the removal of any JavaScript code from polyfill.io.
– Google has started blocking ads on affected sites to reduce traffic and potential victims.
– Andrew Betts, the original creator of the polyfill service, warned against using the domain after its sale.
– Alternative mirrors are now provided by Fastly and Cloudflare to avoid using the compromised domain.

Membership Required

 You must be a member to access this content.

View Membership Levels
Already a member? Log in here