The Chonkerton

BdThemes plugins supply-chain hack creates rogue WordPress admins

tech

Per BleepingComputer, BdThemes—a developer of WordPress design plugins—was hit by a supply-chain attack. Threat actors compromised the company's upstream infrastructure and modified a remote JSON feed sent to site administrators' browsers, creating unauthorized admin accounts. The breach demonstrates how WordPress ecosystem vulnerabilities can propagate through plugin infrastructure.

Source: https://www.bleepingcomputer.com/news/security/bdthemes-p...

Listen to this story

Hear this and more stories in a personalized audio briefing.

Open The Chonkerton