CyberNews
← Back to dashboard
NEWS BleepingComputer

BdThemes plugins supply-chain hack creates rogue WordPress admins

Aug 10, 2026, 09:12 PM · by BleepingComputer

A threat actor compromised the upstream infrastructure of BdThemes, a developer of premium WordPress web-design tools, and modified a remote JSON feed delivered to administrators' browsers to create rogue admin accounts. This development is consistent with broader industry trends, where threat actors increasingly reuse proven techniques and commodity tooling rather than investing in novel malware. Finally, maintain offline, tested backups and a clear communication plan so that business continuity decisions are made ahead of time rather than under pressure.

Source: BleepingComputer