Dear Valued Customers,
We want to inform you about a critical security issue affecting the widely-used Polyfill JavaScript library and to update you on the measures Imunify360 has taken to protect you.
A recently discovered supply chain attack targeting the Polyfill[.]io domain has potentially impacted over 380,000 websites worldwide. This attack began after the domain and its associated GitHub repository were sold to a new owner.
Here are the key details:
The attack specifically affects sites using the following URLs:
Major companies and web applications using these services are potentially at risk. Due to Polyfill's widespread use, the effects of this attack could be significant.
At Imunify360, we’ve taken swift action to mitigate this threat. We have released the following signature to defend against the attack:
SMW-INJ-27376-js.spam.polyfill
SMW-INJ-27348-js.spam.polyfill
SMW-INJ-27295-js.spam.polyfill
This signature performs the following actions:
As part of this mitigation, you may see detections for files such as:
These detections do not necessarily indicate that your site has been compromised. Due to Polyfill's extensive use, many web applications may show signs of this issue, but it doesn't always mean a hack has occurred.
We are closely monitoring the situation and will provide further updates as necessary. As always, your security remains our top priority.
If you have any questions or concerns, please do not hesitate to contact our support team.