ended4월 21일· 1 sources

Identity Crisis: How Persistent Trust Broke the WordPress Supply Chain

한 번의 로그인이 부른 대참사, WordPress 플러그인 30종 '백도어' 동시 감염

Why it matters

The coordinated compromise of 30 WordPress plugins reveals a fatal structural flaw where distribution pipelines trust contributor accounts indefinitely after a single login. This failure in identity continuity allows attackers to bypass traditional scanners using dormant, header-triggered backdoors, effectively turning software repositories into delivery mechanisms for unauthorized access.

1
Sources
+0
24h
Growth
153d
Active
WordPressSupply Chain AttackIdentity ContinuityBackdoorPlugin Security

Sources

Related Issues