Back to all news
Security

BdThemes Supply Chain Attack Poisons JSON to Create Rogue WordPress Admins

The Hacker News·August 11, 2026·1 min read
BdThemes Supply Chain Attack Poisons JSON to Create Rogue WordPress Admins

Cybersecurity researchers warned of a supply chain compromise impacting WordPress plugin vendor BdThemes, prompting the CMS platform's plugins team to temporarily disable their downloads. Wordfence researcher Paolo Tresso said that unlike traditional software supply chain attacks, zero source code files were modified within the official WordPress.org repository. The attack poisons JSON to create rogue WordPress admins.

Read at The Hacker News
Daily crypto arcade

Read the news, then play it.

Chainshorts turns crypto headlines into a daily game. Catch up in 60 words, then jump into daily lucky draws for a shot at the pot.

Open ChainshortsGet it on the Solana dApp Store