{"id":12102,"date":"2024-07-06T17:41:26","date_gmt":"2024-07-06T05:41:26","guid":{"rendered":"https:\/\/kinetics.co.nz\/?p=12102"},"modified":"2024-07-06T17:41:26","modified_gmt":"2024-07-06T05:41:26","slug":"when-not-being-able-to-access-a-website-is-a-good-thing","status":"publish","type":"post","link":"https:\/\/new.kinetics.co.nz\/?p=12102","title":{"rendered":"When not being able to access a website is a good thing."},"content":{"rendered":"<p>[et_pb_section fb_built=&#8221;1&#8243; _builder_version=&#8221;4.24.3&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_row _builder_version=&#8221;4.24.3&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_column type=&#8221;4_4&#8243; _builder_version=&#8221;4.24.3&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_text _builder_version=&#8221;4.24.3&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;]<\/p>\n<p>We know it can be incredibly frustrating when you can\u2019t access a website that you need.\u00a0 That happened for a number of a number of our clients last week, (and, counter-intuitively, it\u2019s a good thing)<\/p>\n<p>Many websites are built on common components.\u00a0 One of those is called \u201cPolyfill\u201d (pollyfill.io) and it is reportedly present in approximately 3,4% of all websites. Over recent days, our systems automatically blocked access to any site built with this. \u00a0<\/p>\n<p>They were highly effective at protecting our customers from a major malware risk.<strong><\/strong><\/p>\n<p>[\/et_pb_text][et_pb_text _builder_version=&#8221;4.24.3&#8243; _module_preset=&#8221;default&#8221; background_color=&#8221;rgba(33,23,23,0.22)&#8221; custom_padding=&#8221;20px|20px|20px|20px|false|false&#8221; border_width_all=&#8221;2px&#8221; border_color_all=&#8221;#222222&#8243; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;]<\/p>\n<h2><strong>It might have been frustrating, but it was a great example of the cyber-security protection within Kinetics KARE Foundation working to keep people safe.<\/strong><\/h2>\n<p>[\/et_pb_text][et_pb_image src=&#8221;\/wp-content\/uploads\/2024\/07\/PollyFill.png&#8221; title_text=&#8221;PollyFill&#8221; _builder_version=&#8221;4.24.3&#8243; _module_preset=&#8221;default&#8221; animation_style=&#8221;zoom&#8221; border_width_all=&#8221;1px&#8221; border_color_all=&#8221;#222222&#8243; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][\/et_pb_image][et_pb_text _builder_version=&#8221;4.24.3&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;]<\/p>\n<h2>So what is Polyfill?<\/h2>\n<p>Polyfill.io is an opensource javascript library.\u00a0 It has enough market share to be interesting for bad-actors.. In February this year it was sold to a new owner.\u00a0 A number of security vendors became concerned that these new owners may not have good intentions and began monitoring the libraries<sup>2<\/sup>. Recently, those concerns were made true when SanSec, a Dutch cyber security vendor, found malicious code being injected into websites by polyfill libraries<sup>3<\/sup>.<\/p>\n<p>Soon after, Kinetics security services began seeing higher rates of blocked sites and we have since confirmed this is in response to those sites being vulnerable to this new widespread attack.<\/p>\n<p>Using the right tools is essential to defend ourselves in our modern threat environment, the situation and landscape can change quickly, our tools must be able to adapt just as fast.<\/p>\n<h3>Kinetics KARE Foundation tools have done just that and continue to keep our customers safe.\u00a0<\/h3>\n<ol>\n<li><a href=\"https:\/\/w3techs.com\/technologies\/details\/js-polyfillio\">Usage Statistics and Market Share of Polyfill.io for Websites, July 2024 (w3techs.com)<\/a>\u00a0<\/li>\n<\/ol>\n<ol>\n<li><a href=\"https:\/\/blog.cloudflare.com\/polyfill-io-now-available-on-cdnjs-reduce-your-supply-chain-risk\">polyfill.io now available on cdnjs: reduce your supply chain risk (cloudflare.com)<\/a>\u00a0<\/li>\n<\/ol>\n<ol>\n<li><a href=\"https:\/\/sansec.io\/research\/polyfill-supply-chain-attack\">Polyfill supply chain attack hits 100K+ sites (sansec.io)<\/a>\u00a0<\/li>\n<\/ol>\n<p>[\/et_pb_text][\/et_pb_column][\/et_pb_row][\/et_pb_section]<\/p>\n","protected":false},"excerpt":{"rendered":"<p>We know it can be incredibly frustrating when you can\u2019t access a website that you need.\u00a0 That happened for a number of a number of our clients last week, (and, counter-intuitively, it\u2019s a good thing) Many websites are built on common components.\u00a0 One of those is called \u201cPolyfill\u201d (pollyfill.io) and it is reportedly present in [&hellip;]<\/p>\n","protected":false},"author":5,"featured_media":12103,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_et_pb_use_builder":"on","_et_pb_old_content":"","_et_gb_content_width":"","footnotes":""},"categories":[4,5],"tags":[],"class_list":["post-12102","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-news","category-security"],"_links":{"self":[{"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=\/wp\/v2\/posts\/12102","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=\/wp\/v2\/users\/5"}],"replies":[{"embeddable":true,"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=12102"}],"version-history":[{"count":0,"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=\/wp\/v2\/posts\/12102\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=\/"}],"wp:attachment":[{"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=12102"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=12102"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=12102"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}