CYBERSECURITYTRACKER
TRACKING6,506 stories in this site build1,309 vulnerability news stories in this site build
Permanent story citation

SmartApeSG Launches Okendo Reviews Supply Chain Attack

This page keeps the story as Cybersecurity Tracker first published it. If the tracker later corrects it, the correction appears below the original and never replaces it.

Back to newsStory 6246

As cited

Copy frozen at (site build).

threat intel

SmartApeSG Launches Okendo Reviews Supply Chain Attack

On May 14, 2026, Zscaler ThreatLabz identified malicious JavaScript code injected into the Okendo Reviews widget, a customer review platform deployed on more than 18,000 websites. The SmartApeSG threat actor embedded a staged loader that used obfuscation, environment filtering, and dynamic infrastructure reconstruction to avoid detection and prepare for downstream delivery of remote access trojans or information stealers. The compromise affected high-traffic e-commerce pages, with some impacted sites receiving millions of monthly visitors.

Why it matters: E-commerce operators and any website using the Okendo Reviews widget faced potential malware delivery to site visitors through compromised legitimate code; practitioners should verify widget remediation and monitor for secondary infections from NetSupport, Remcos, or StealC malware families.

Source published
First seen by Cybersecurity Tracker

Source attribution

Correction

Correction recorded as of .

threat intel

SmartApeSG Launches Okendo Reviews Supply Chain Attack

On May 14, 2026, Zscaler ThreatLabz identified malicious JavaScript code injected into the Okendo Reviews widget, a customer review platform deployed on more than 18,000 websites. The SmartApeSG threat actor embedded a staged loader that used obfuscation, environment filtering, and dynamic infrastructure reconstruction to avoid detection and prepare for downstream delivery of remote access trojans or information stealers. The compromise affected high-traffic e-commerce pages, with some impacted sites receiving millions of monthly visitors.

Why it matters: E-commerce operators and any website using the Okendo Reviews widget faced potential malware delivery to site visitors through compromised legitimate code; practitioners should verify widget remediation and monitor for secondary infections from NetSupport, Remcos, or StealC malware families.

VendorsMicrosoftAppleGoogleAdobe
Source published
First seen by Cybersecurity Tracker

Source attribution

Glossary