Hackers breach software vendor for Magento supply-chain attacks
Hackers have injected malware in multiple extensions from FishPig, a vendor of Magento-WordPress integrations that count over 200,000 downloads.
Fishpig Magento Security Suite Fishpig Wordpress Syslogk Linux Tech Support Remote Access Trojan Supply Chain Attack
Source: bleepingcomputer.com