:

WORDPRESS PLUGINS COMPROMISED IN CDN SUPPLY CHAIN ATTACK

AI DESK2 MIN READ
MON, JUN 15, 2026

■ AI-SUMMARIZED FROM 1 SOURCE ▸ TIMELINE

Three WordPress plugins owned by Awesome Motive were hacked through a content delivery network breach. OptinMonster, TrustPulse, and PushEngage were all affected in the supply-chain attack.

A supply-chain attack has compromised three WordPress plugins distributed through Awesome Motive's content delivery network (CDN). The affected plugins are OptinMonster, TrustPulse, and PushEngage. The breach targeted the CDN infrastructure rather than individual plugin repositories, meaning the malicious code was delivered to users through the distribution network. This type of attack is particularly dangerous because it affects all users of the compromised plugins simultaneously, regardless of their own security measures. Awesome Motive is a major WordPress ecosystem player, making this incident significant for the broader WordPress community. The company operates several popular plugins and services used by millions of websites. Supply-chain attacks have become increasingly common in software development. By compromising infrastructure at the distribution level, attackers can reach large numbers of targets with a single breach. This approach is often more efficient than targeting individual systems or organizations. Users of the affected plugins should immediately update to patched versions when available. Website administrators relying on OptinMonster, TrustPulse, or PushEngage are advised to monitor their sites for suspicious activity and review access logs for the period when the plugins were compromised. Awesome Motive has not yet publicly disclosed full details of the attack, including when it was discovered or the extent of the compromise. The company typically provides updates through official channels and security advisories. This incident underscores the importance of keeping WordPress plugins updated and monitoring plugin sources. Security researchers recommend using a Web Application Firewall (WAF) and implementing strong authentication protocols as additional protective measures against supply-chain attacks.

■ SOURCES

Bleeping Computer

■ SUMMARY WRITTEN BY AI FROM THE LINKS ABOVE

■ MORE FROM THE SECURITY DESK

A cross-site request forgery (CSRF) vulnerability in WordPress Core, dubbed 'Click2Shell,' enables attackers to execute PHP code on vulnerable servers. Technical details and working exploits are now public.

4H AGOSecurity Desk

The ShinyHunters extortion group took control of the dark web leak site belonging to the prolific Cl0p ransomware gang over the weekend. The attackers set an eight-figure extortion demand pegged at 2.333% of Cl0p's estimated net worth.

5H AGOSecurity Desk

The FBI's CJIS Security Policy v6.1 strengthens encryption requirements and vulnerability scanning mandates. Agencies must prepare for updated password, MFA, and identity verification standards ahead of compliance audits.

8H AGOSecurity Desk

New research reveals that digital watermarks intended to protect content ownership are being repurposed as surveillance mechanisms to track user behavior and identify individuals across platforms.

8H AGOIndustry Desk

■ SUBSCRIBE TO THE DAILY BRIEF

ONE EMAIL, 5 STORIES, 06:00 UTC. UNSUBSCRIBE ANYTIME.