BdThemes의 공급망 공격으로 WordPress 관리자 계정 생성이 악용됐다.
사이버 보안 연구원들은 WordPress 플러그인 공급업체인 BdThemes에 대한 공급망 공격을 경고했다. 이로 인해 콘텐츠 관리 시스템 플랫폼의 플러그인 팀은 다운로드를 일시적으로 비활성화했다. Wordfence 연구원 파올로 트레소는
A supply chain attack on BdThemes creates rogue WordPress admin accounts.
Cybersecurity researchers have warned of a supply chain compromise impacting the WordPress plugin vendor BdThemes. This prompted the plugins team of the content management system platform to temporarily disable their downloads. Paolo Tresso, a researcher at Wordfence, stated that unlike traditional software supply chain attacks, no source code files were modified within the official WordPress.org repository.