PULSE NAME
July 2: Polyfill.io Supply Chain Attack - Digging into the Web of Compromised Domains | Censys
WHITE CyberHunter_NL 2024-07-05 Modified: 2024-07-05
16
IOCs
MEDIUM VOLUME
A supply chain attack targeting the Polyfill.io JavaScript library has exposed a network of potentially compromised domains, according to Censys.com, the world’s leading internet security platform.
MITRE ATT&CK & Malware Families
ATT&CK TECHNIQUES
Indicators of Compromise (16)
All URL domain hostname
TYPEINDICATORDESCRIPTIONCREATED
URL https://cdn.polyfill.com 2024-07-05
URL https://polykill.io/ 2024-07-05
URL https://publicwww.com/websites/%22cdn.polyfill.io%22/ 2024-07-05
URL https://sansec.io/research/polyfill-supply-chain-attack 2024-07-05
URL https://www.edgenext.com/ 2024-07-05
domain bootcdn.net 2024-07-05
domain edgenext.com 2024-07-05
domain polyfill-fastly.io 2024-07-05
domain polykill.io 2024-07-05
domain publicwww.com 2024-07-05
domain sansec.io 2024-07-05
domain staticfile.net 2024-07-05
domain staticfile.org 2024-07-05
hostname 5f52353c.u.fn03.vip 2024-07-05
hostname cdn.polyfill.com 2024-07-05
hostname www.edgenext.com 2024-07-05