
On March 10, 2026, AppsFlyer reported a supply chain compromise affecting its Web SDK. Between 01:00 and 10:00 UTC, websites loading the SDK from the official CDN served a malicious JavaScript payload designed to steal cryptocurrency and sensitive user data.
The Incident Details
websdk.appsflyer.com were redirected from AWS to a different provider (GCore), allowing attackers to distribute a modified version of the SDK.://websdk.appsflyer.com, was used to manage the malicious modules.Immediate Recommendations
If your site utilized the AppsFlyer Web SDK during the breach window:
This event highlights a growing trend in 2026 of targeting trusted third-party providers to compromise thousands of downstream websites simultaneously.
#hackers #hijack appsflyer #news #sdk to #steal cryptocurrency #web — News
© Bulletproof Servers. All rights reserved.