Story thread · 2 reports / 2 sources
Brevo supply-chain attack injected ClickFix scripts on customer sites
bleepingcomputer.com · 7h · first report
Brevo confirmed that attackers stole a Cloudflare API key and used it to inject malicious ClickFix scripts into its websites and JavaScript files embedded on customer sites to distribute malware. [...]
The coverage
The conversation · 0
Sign in to join the conversation.
No comments yet — start the thread.