---
title: "A rich hacker just penetrated 31 WordPress plugins..."
url: https://daily.dev/posts/a-rich-hacker-just-penetrated-31-wordpress-plugins--pqgvfajzf
source_url: https://www.youtube.com/watch?v=piah4fV_o2Q
type: video:youtube
source: "Fireship"
published: 2026-04-16T15:34:14.297Z
updated: 2026-04-16T15:34:32.663Z
tags: ["cyber", "php", "wordpress", "cloudflare"]
reading_time: 5
upvotes: 106
comments: 30
language: en
---

> ## Documentation Index
> Fetch the complete documentation index at: https://daily.dev/llms.txt
> Use this file to discover all available pages before exploring further.

# A rich hacker just penetrated 31 WordPress plugins...

**[Fireship](https://daily.dev/sources/fireship)** · 5 min read · 106 upvotes · 30 comments

## Summary

A supply chain attack compromised 31 WordPress plugins after an attacker purchased them via Flippa, inserted a dormant backdoor, and later activated malicious payloads that modified core WordPress files including wp-config.php. The command-and-control domain was resolved through an Ethereum smart contract, making it resilient to takedowns. The attack bypassed normal security suspicion by arriving as a routine plugin update. The post also covers Cloudflare's new Mdash project, a WordPress-compatible alternative built on Astro that sandboxes plugins using dynamic workers and capability-based bindings to prevent the kind of full-privilege access that makes WordPress plugins dangerous.

## Full article

daily.dev links to this article rather than hosting it. Read it at the original source: <https://www.youtube.com/watch?v=piah4fV_o2Q>

## Community discussion

Top comments from developers on daily.dev.

**@somethingsomethingpython** · 11 upvotes

> What is that

**@niemann** · 5 upvotes

> emDash will make WP obsolete

**@bob\_marley\_556** · 3 upvotes

> why the world is working with the plugins which can be attack by the hacker easily

**@deepjoshi\_dev** · 2 upvotes

> Why do people use wordpress in the first place?

## Similar posts on daily.dev

- [Attacker Bought 30 WordPress Plugins on Flippa and Backdoored All of Them](https://daily.dev/posts/attacker-bought-30-wordpress-plugins-on-flippa-and-backdoored-all-of-them-t8f7tgpmt) · InfoQ · 3 upvotes · 2 comments
- [Someone Bought 30 WordPress Plugins and Planted a Backdoor in All of Them.](https://daily.dev/posts/someone-bought-30-wordpress-plugins-and-planted-a-backdoor-in-all-of-them--zu6yjzajf) · Hacker News · 1 upvotes · 0 comments

---

Tags: [#cyber](https://daily.dev/tags/cyber), [#php](https://daily.dev/tags/php), [#wordpress](https://daily.dev/tags/wordpress), [#cloudflare](https://daily.dev/tags/cloudflare)

[View this post on daily.dev](https://daily.dev/posts/a-rich-hacker-just-penetrated-31-wordpress-plugins--pqgvfajzf)
