Brevo supply-chain attack injected ClickFix scripts on customer sites
AI summary
- The attack modified Brevo's forms script, Conversations widget, and SDK loader scripts embedded on customer websites.
- The malicious Cloudflare Worker operated for approximately five and a half hours on September 14, affecting multiple Brevo domains.