Fake Login Prompts Hijack Toshiba And Muji Websites
Major corporate websites including Toshiba and Muji displayed fraudulent login prompts after being compromised through a malicious Polyfill.io script. The attack leveraged a legitimate JavaScript library service that was compromised at the supply chain level, injecting fake credential harvesting for