Dossier
ShapedPlugin
Coverage of ShapedPlugin in the Nexus archive.
- ShapedPlugin WordPress Pro Plugins Backdoored in Supply Chain Attack
Multiple WordPress plugins from ShapedPlugin were compromised in a supply chain attack after threat actors injected backdoor code into Pro plugin releases through official licensed update channels. Wordfence analyzed the incident, confirming the vendor's build and distribution pipeline was compromised.