BdThemes Supply Chain Attack Poisons JSON to Create Rogue WordPress Admins

Cybersecurity researchers have warned of a supply chain compromise impacting WordPress plugin vendor BdThemes, prompting the content management systems (CMS) platform’s plugins team to temporarily disable their downloads.

“Unlike traditional software supply chain attacks, zero source code files were modified within the official WordPress.org repository,” Wordfence researcher Paolo Tresso said.

Source: The Hacker News

Leave a Reply

Your email address will not be published. Required fields are marked *

Explore More

Exposed Hacker Server Reveals WP-SHELLSTORM Backdooring Thousands of WordPress Sites

Exposed Hacker Server Reveals WP-SHELLSTORM Backdooring Thousands of WordPress Sites A cybercrime crew left one of its own servers wide open on the internet for three weeks, and it exposed

Daisugi the Japanese Technique of Trees Out of Trees, Making Exact Straight Wood

Daisugi the Japanese Technique of Trees Out of Trees, Making Exact Straight Wood Source: Hacker News

Rails World 2026 Opening Keynote [video]

Rails World 2026 Opening Keynote Source: Hacker News