TechWave AI Pulse Signal over noise
UGLY SECURITY GLOBAL

Brevo supply-chain attack injected ClickFix scripts on customer sites

Brevo confirmed that attackers stole a Cloudflare API key and used it to inject malicious ClickFix scripts into its websites and JavaScript files embedded on customer sites to distribute malware. [...]

BleepingComputer Thu, 17 Sep 2026 17:11
Read the original at BleepingComputer ↗