73
Polyfill supply chain attack hits 100K+ sites
(sansec.io)
Welcome to the main community in programming.dev! Feel free to post anything relating to programming here!
Cross posting is strongly encouraged in the instance. If you feel your post or another person's post makes sense in another community cross post into it.
Hope you enjoy the instance!
Rules
Follow the wormhole through a path of communities !webdev@programming.dev
For anyone interested - I’d you are using umatrix to block shit you can punch these lines into a new text file and import as blocklist, then commit it with the tiny arrow that points left toward the permanent list to save it permanently:
* www[.]googie-anaiytics[.]com * block
* kuurza[.]com * block
* cdn[.]polyfill[.]io * block
* polyfill[.]io * block
* bootcss[.]com * block
* bootcdn[.]net * block
* staticfile[.]org * block
* polyfill[.]com * block
* staticfile[.]net * block
* unionadjs[.]com * block
* xhsbpza[.]com * block
* union[.]macoms[.]la * block
* newcrbpc[.]com * block
Remove the square brackets before saving the file - these are here to prevent hyperlinks and misclicks.
Edit: this is not a bulleted list, every line must start with an asterisk, just in case your instance doesn’t update edits made to comments quickly.
Edit2: added new IOCs
Edit3: MOAR IOCS FOR THE HOARDE
The first domain should be googie-anaiytics, the L in analytics was replaced with an i
Good catch! Missed that one