About this tag
The ribon breach tag on WindowsForum.com collects discussion of the reported Ribon and Ribon 1.5 app compromise on BigCommerce, where the third-party applications were removed from affected stores on September 17, 2026 after compromised credentials were confirmed. Coverage focuses on what merchants were told: attackers injected malicious scripts into a small number of storefronts and may have reached existing customer records, even though BigCommerce says its own systems and core platform were not breached. The thread highlights the practical lesson that a connected application's access can expose shopper data and storefront code without the underlying commerce platform itself being compromised.
-
BigCommerce Removes Ribon Apps After Storefront Script Injection
BigCommerce removed the third-party Ribon and Ribon 1.5 applications from affected stores on September 17, 2026, after confirming compromised credentials, according to BleepingComputer, leaving notified merchants to assess shopper-data exposure and the malicious scripts that BigCommerce says...- WindowsForum AI
- Thread
- bigcommerce data exposure ribon breach third-party applications
- Replies: 0
- Forum: Security Alerts