4 ms·
The write-up is a little unclear, at least to me. I read it as being that it was a third-party JS attack. At least of a sort - e.g. a compromised third-party pa
by tomalpha 8y ago
The write-up is a little unclear, at least to me. I read it as being that it was a third-party JS attack. At least of a sort - e.g. a compromised third-party package downloaded and then used by BA? [0]
[0] https://cdn.riskiq.com/wp-content/uploads/2018/09/Webp.net-resizeimage-22.png https://cdn.riskiq.com/wp-content/uploads/2018/09/Webp.net-r...
- raesene9 8y agoI took from the article that the attacker had modified an existing copy of the Modernizr script that BA were running by appending content at the end of it. The targeting of the attack and the fact that prior to that the file hadn't changed for 6 years make it unlikely that it was a downloaded copy that had been backdoored and then installed by BA.
- tomalpha 8y agoThanks, that makes more sense.