← Back to the feed

~/article/brevo-supply-chain-attack-injected-clickfix-scripts-on-customer-sites-dqmgge
infoSource: BleepingComputer

Brevo supply-chain attack injected ClickFix scripts on customer sites

Brevo confirmed that attackers stole a Cloudflare API key and used it to inject malicious ClickFix scripts into its websites and JavaScript files embedded on customer sites to distribute malware.

Read at the source

Summary written for cymesh.dev. The full article lives at BleepingComputer.

~/cymesh.net

Certificates expire quietly

cymesh.net watches your TLS and SSL certificates and warns you before one lapses.

monitorsTLS/SSL expiry, chain and hostnamealertsemail, ahead of the expiry datescopenon-intrusive, read-only checks