Close Menu
AI News TodayAI News Today

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Ford’s EV and software chief Doug Field is leaving the company

    Jury finds Live Nation/Ticketmaster is illegal monopoly that overcharged fans

    Florida surgeon charged with killing man after removing liver instead of spleen

    Facebook X (Twitter) Instagram
    • About Us
    • Contact Us
    Facebook X (Twitter) Instagram Pinterest Vimeo
    AI News TodayAI News Today
    • Home
    • Shop
    • AI News
    • AI Reviews
    • AI Tools
    • AI Tutorials
    • Chatbots
    • Free AI Tools
    AI News TodayAI News Today
    Home»AI News»Someone planted backdoors in dozens of WordPress plug-ins used in thousands of websites
    AI News

    Someone planted backdoors in dozens of WordPress plug-ins used in thousands of websites

    By No Comments2 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    A stylized WordPress logo.
    Share
    Facebook Twitter LinkedIn Pinterest Email

    Dozens of plug-ins for the widely used open source web blogging software WordPress are now offline after a backdoor was discovered in them, used to push malicious code to any website that relied on the plug-ins. The backdoor was discovered after a new corporate owner bought these plug-ins.

    Anchor Hosting founder Austin Ginder sounded the alarm in a blog post last week describing a supply chain attack on a WordPress plug-in maker called Essential Plugin. Ginder said someone last year bought Essential Plugin and the backdoor was soon added to the plug-ins’ source code. The backdoor sat dormant until earlier this month when it activated and began distributing malicious code to any website with the plug-ins installed.

    Essential Plugin says on its website that it has over 400,000 plug-in installs and more than 15,000 customers. WordPress’ plug-in install page says the affected plug-ins are in over 20,000 active WordPress installations.

    Plug-ins allow owners of WordPress-based websites to extend the site’s functionality, but in doing so grant the plug-ins access to their installations, which can open these websites to malicious extensions and potential compromise. But Ginder warned that WordPress users are not notified of any plug-ins’ change in ownership, exposing users to potential takeover attacks by their new owners.

    According to Ginder, this is the second hijack of a WordPress plug-in discovered in as many weeks. Security researchers have long warned of the risks of malicious actors buying software and changing its code in order to compromise a large number of computers around the world.

    While the plug-ins have been removed from WordPress’ directory and now list their closure as “permanent,” Ginder warned that WordPress owners should check if they still have one of the malicious plug-ins installed and remove it. Ginder has a list of the affected plug-ins in the blog post.

    Representatives for Essential Plugin did not respond to a request for comment.

    backdoors dozens planted plugins thousands websites WordPress
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous ArticleRedefining the future of software engineering
    Next Article The attacks on Sam Altman are a warning for the AI world
    • Website

    Related Posts

    AI News

    Florida surgeon charged with killing man after removing liver instead of spleen

    AI News

    Ford EV and tech chief leaving automaker

    AI News

    Google releases new apps for Windows and MacOS

    Add A Comment
    Leave A Reply Cancel Reply

    Top Posts

    Ford’s EV and software chief Doug Field is leaving the company

    0 Views

    Jury finds Live Nation/Ticketmaster is illegal monopoly that overcharged fans

    0 Views

    Florida surgeon charged with killing man after removing liver instead of spleen

    0 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews
    AI Tutorials

    Quantization from the ground up

    AI Tools

    David Sacks is done as AI czar — here’s what he’s doing instead

    AI Reviews

    Judge sides with Anthropic to temporarily block the Pentagon’s ban

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Most Popular

    Ford’s EV and software chief Doug Field is leaving the company

    0 Views

    Jury finds Live Nation/Ticketmaster is illegal monopoly that overcharged fans

    0 Views

    Florida surgeon charged with killing man after removing liver instead of spleen

    0 Views
    Our Picks

    Quantization from the ground up

    David Sacks is done as AI czar — here’s what he’s doing instead

    Judge sides with Anthropic to temporarily block the Pentagon’s ban

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Facebook X (Twitter) Instagram Pinterest
    • About Us
    • Contact Us
    • Terms & Conditions
    • Privacy Policy
    • Disclaimer

    © 2026 ainewstoday.co. All rights reserved. Designed by DD.

    Type above and press Enter to search. Press Esc to cancel.