← Back to Feed
BigCommerce alerts merchants of data breach linked to Ribon apps
September 21, 2026 · BleepingComputer · Severity: CRITICAL
Ecommerce platform BigCommerce has alerted multiple merchants to data breaches after attackers compromised credentials for third-party Ribon applications and used them to inject malicious scripts into online stores.
Key Takeaways
- BigCommerce has alerted merchants of a data breach linked to Ribbon apps that may have exposed customer information through compromised third-party application integrations.
- The supply-chain breach via Ribbon apps demonstrates the risk of third-party integrations on e-commerce platforms and the cascading impact on merchant customers.
- BigCommerce merchants should review their Ribbon app integrations, rotate API credentials, and notify affected customers in accordance with data breach notification requirements.