Build credibility. Find opportunity. Advance in cybersecurity.
Font size: +

BdThemes Supply Chain Attack Poisons JSON to Create Rogue WordPress Admins

Cybersecurity team reviewing a regional security update
Regional security update

Assess promptly

Cybersecurity researchers have warned of a supply chain compromise impacting WordPress plugin vendor BdThemes, prompting the content management systems (CMS) platform's plugins team to temporarily disable their downloads. "Unlike traditional software supply chain attacks, zero source code files were modified within the official WordPress.org repository," Wordfence researcher Paolo Tresso said.

At a glance

  • Cybersecurity researchers have warned of a supply chain compromise impacting WordPress plugin vendor BdThemes, prompting the content management systems (CMS) platform's plugins team to temporarily disable their downloads. "Unlike traditional software supply chain attacks, zero source code files were modified within the official WordPress.org repository," Wordfence researcher Paolo Tresso said.
  • SecurityTalent reviewed the linked official source and preserved its attribution.
Sign in to read full story
In order for you to continue reading the full contents of the post, you will need to login first

Copyright

© SecurityTalent.com — original summary and analysis

'Jewelbug' APT Balances State Espionage & Cryptocu...
'GhostJacking' Exposes Identity Governance Gaps in...

Related Posts

 

Comments

Already Registered? Login Here
No comments made yet. Be the first to submit a comment