← Back to Feed

BigCommerce alerts merchants of data breach linked to Ribon apps

September 21, 2026 · BleepingComputer · Severity: CRITICAL

Ecommerce platform BigCommerce has alerted multiple merchants to data breaches after attackers compromised credentials for third-party Ribon applications and used them to inject malicious scripts into online stores.

Key Takeaways

  • BigCommerce has alerted merchants of a data breach linked to Ribbon apps that may have exposed customer information through compromised third-party application integrations.
  • The supply-chain breach via Ribbon apps demonstrates the risk of third-party integrations on e-commerce platforms and the cascading impact on merchant customers.
  • BigCommerce merchants should review their Ribbon app integrations, rotate API credentials, and notify affected customers in accordance with data breach notification requirements.
☕ Buy a Coffee