
Attackers Abuse Brevo CDN and DNS to Inject Malicious JavaScript Into Customer Websites
The campaign reportedly targeted visitors through Brevo’s embedded tracker, chat widget, hosted forms, and unsubscribe pages. The incident appears larger than Brevo’s September 10 disclosure, which said six customer accounts were compromised. Four days later, malicious code was reportedly served from Brevo-linked domains between 16:05 and 20:13 UTC on September 14. SEO keyphrase synonyms include […]
The post Attackers Abuse Brevo CDN and DNS to Inject Malicious JavaScript Into Customer Websites appeared first on Cyber Security News.