A critical supply-chain compromise in a widely used WordPress plugin has exposed approximately 20,000 websites to potential administrator takeover. Researchers discovered a backdoor authentication bypass embedded in the plugin that requires no credentials or user interaction to exploit. Critical WordPress Plugin Security firm Wordfence revealed that its autonomous AI threat intelligence system, PRISM, detected the […]
Read the original article: