Infosecurity-Magazine
Supply Chain Attack on BdThemes Plugins Compromises WordPress Admin Accounts
Ask AI about this cluster
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Cluster AI
Ask questions about this threat cluster with AI-powered analysis.
Get Researcher $29.99/moArticle Content
A supply chain attack has targeted multiple BdThemes WordPress plugins, allowing attackers to hijack administrator sessions, create unauthorized admin accounts, and deploy persistent web shells. The incident was reported by Wordfence Threat Intelligence on August 7, 2026. Attackers exploited a poisoned remote promotional API feed used by the plugins, impacting site administrators who utilize these themes. The affected plugins include popular options like Element Pack. No modifications to the plugin source code or updates were necessary for the attack to succeed. This incident raises significant security concerns for WordPress users relying on these plugins. The scope of the impact remains unclear, but the potential for widespread exploitation exists due to the popularity of the affected plugins.
Key Points: • Attackers exploited a poisoned API response to compromise BdThemes WordPress plugins. • Unauthorized admin accounts and web shells were created without modifying plugin code. • Wordfence reported the incident on August 7, 2026, highlighting a serious security risk.