After last week's security themed newsletter, it seems right to highlight another breach. jQuery is arguably the most popular javascript library in use today and the site that hosts the download was hacked this week. Since the average visitors to the site are coders, who are much more likely to have clearance to system critical infrastructure, it is definitely time for a password reset.
jQuery.com, the official website of the popular cross-platform JavaScript library of the same name, has been compromised and has been redirecting visitors to a website hosting the RIG exploit kit and, ultimately, delivering information-stealing malware. While any website compromise is dangerous for users, this one is particularly disconcerting because of the demographic of its users, says James Pleger, Director of Research at RiskIQ