Earlier today the WordPress team noticed suspicious commits to several popular plugins (AddThis, WP-Touch, and W3 Total Cache) containing cleverly disguised backdoors...
http://wordpress.org/news/2011/06/passwords-reset/
http://wordpress.org/news/2011/06/passwords-reset/



Comment