BigCommerce merchants hit by data breach via Ribon app compromise

Starting September 21, 2026, BigCommerce alerted merchants of a data breach after attackers compromised credentials for third-party Ribon payment applications and used them to inject malicious scripts into online storefronts, exposing customer data. The breach represented a supply-chain compromise affecting multiple merchants.

6 reportsother · tech

Claim audit

No BS check run yet — press ⚖ to extract this story's claims and verify them against independent sources.

All coverage

Ecommerce platform BigCommerce has alerted multiple merchants to data breaches after attackers compromised credentials for third-party Ribon applications and used them to inject malicious scripts into

mastodon:infosec-exchangeother8d ago kagi ↗

Ecommerce platform BigCommerce has alerted multiple merchants to data breaches after attackers compromised credentials for third-party Ribon applications and used them to inject malicious scripts into online stores. https://www. bleepingcomputer.com/news/secu rity/bigcommerce-alerts-merchants-of-data-breach-linked-to-ribon-apps/

🤖 BigCommerce alerts merchants of a data breach linked to third-party Ribon apps: attackers used compromised credentials to inject malicious scripts into online stores. Supply-chain compromise; rotat

mastodon:infosec-exchangeother8d ago kagi ↗

🤖 BigCommerce alerts merchants of a data breach linked to third-party Ribon apps: attackers used compromised credentials to inject malicious scripts into online stores. Supply-chain compromise; rotate credentials and audit storefront scripts. 🔗 https://www. bleepingcomputer.com/news/secu rity/bigcommerce-alerts-merchants-of-data-breach-linked-to-ribon-apps/ # DataBreach # SupplyChain # CyberSec

🤖 BigCommerce breach: attackers compromised credentials of third-party Ribon apps and injected malicious scripts into online stores, exposing customer details. Merchants notified; review third-party

mastodon:infosec-exchangeother7d ago kagi ↗

🤖 BigCommerce breach: attackers compromised credentials of third-party Ribon apps and injected malicious scripts into online stores, exposing customer details. Merchants notified; review third-party app access. 🔗 https://www. bleepingcomputer.com/news/secu rity/bigcommerce-alerts-merchants-of-data-breach-linked-to-ribon-apps/ # DataBreach # InfoSec # CyberSec

BigCommerce Data Breach Linked to Compromised Ribon App Keys Attackers used compromised Ribon application keys to access customer records and inject malicious scripts into BigCommerce storefronts. The

mastodon:infosec-exchangeother7d ago kagi ↗

BigCommerce Data Breach Linked to Compromised Ribon App Keys Attackers used compromised Ribon application keys to access customer records and inject malicious scripts into BigCommerce storefronts. The breach exposed personal information including names, contact details, and addresses, but not passwords or payment card data. **** # cybersecurity # infosec # incident # databreach https:// beyondmach

BigCommerce Merchants Suffer Data Breach via Compromised Ribon App API Credentials BigCommerce merchants suffered a data breach after attackers stole API credentials for the third-party Ribon applicat

mastodon:infosec-exchangeother6d ago kagi ↗

BigCommerce Merchants Suffer Data Breach via Compromised Ribon App API Credentials BigCommerce merchants suffered a data breach after attackers stole API credentials for the third-party Ribon application to steal customer records and inject malicious scripts. The incident affected multiple retailers, including Master of Malt, but did not compromise the core BigCommerce platform or payment systems.