{
"$type": "site.standard.document",
"bskyPostRef": {
"cid": "bafyreialx4nay3cfaku4buplg27jd7bz3ax3f6equ6imkdcy3angjp2jua",
"uri": "at://did:plc:6wtxqaikjf62unmnajbfbq5v/app.bsky.feed.post/3mjqna3bjd7i2"
},
"coverImage": {
"$type": "blob",
"ref": {
"$link": "bafkreid6uu3sedaly6y2huzdj4xuq4t24nnr52tmq6utpyhe4zbgnk4lx4"
},
"mimeType": "image/webp",
"size": 32432
},
"path": "/trusted-wordpress-plugins-carried-a-hidden-backdoor-for-months-before-malware-went-live/",
"publishedAt": "2026-04-17T16:57:46.000Z",
"site": "https://vpncentral.com",
"tags": [
"News",
"Trusted WordPress plugins carried a hidden backdoor for months before malware went live",
"VPN Central"
],
"textContent": "A supply chain attack hit the WordPress plugin ecosystem after a buyer acquired a portfolio of widely used plugins and slipped in malicious code that stayed dormant for about eight months. Security reporting from Anchor says the code first appeared in an August 8, 2025 update and only activated on April 6, 2026, when affected […]\n\nThe post Trusted WordPress plugins carried a hidden backdoor for months before malware went live appeared first on VPN Central.",
"title": "Trusted WordPress plugins carried a hidden backdoor for months before malware went live"
}