CuraSec

Act active

BigCommerce merchants hit by credential breach via Ribon third-party apps

2026-09-22 15:30 UTC · BleepingComputer · read the source ↗ #supply-chain#ecommerce#data-breach
  • Engineer — Plan: If you run BigCommerce storefronts with third-party apps, audit installed apps for Ribon-linked integrations and review your CSP headers and script-injection monitoring; no CVE or patch available, but credential hygiene for marketplace apps is the control surface here.
  • SOC/IR — Plan: Add detection coverage for unexpected third-party script injections in e-commerce environments; hunt for new or modified script tags in storefront page responses if BigCommerce is in scope for your estate.
  • Leader — Act: If your organization operates BigCommerce storefronts, confirm whether Ribon apps are installed and request BigCommerce’s incident report; this may trigger PCI DSS or customer notification obligations if payment-adjacent data was exposed.
This entry was curated and judged by AI (Claude) with automated enrichment (CISA KEV / EPSS / public PoC). Verify against the original source before acting. Found a bad verdict? Report it — confirmed errors go to the corrections log.