Monthly Archives: March 2010

Lots of Italian sites getting hacked – Initial analysis

On the last few days we are seeing a large number of reports from Italian sites getting hacked. Way more than the average and way more than from any other country. We got a chance to analyze a couple of … Read more


Posted in Uncategorized | Tagged , , | 3 Comments

APT – Attempting to steal your domain

We all hear of APT (advanced persistent threat) and this is a good example of one trying to steal the vl.com domain. Very good read: Dreamhost account hacked


Posted in Uncategorized | Tagged , | Leave a comment

Perl.com hacked – Security archive case study

Security Archive: Remembering security incidents to make sure we don’t commit the same mistakes over and over again. Want to read more stories like this one? Follow @sucuri_security on twitter or subscribe to our RSS feed. Interested in a web … Read more


Posted in Uncategorized | Tagged , , | Leave a comment

A closer look at the Skipfish

Skipfish was just released last week by Michal Zalewski and it seems that in just those few days out there, everyone is talking about it. If you haven’t heard about it, it is a “A fully automated, active web application … Read more


Posted in Uncategorized | 3 Comments

Google’s Webpage removal request tool

Do you need to remove sensitive information from Google? Found a dead link in our search results? Want to help us improve our SafeSearch filter? Check out Google’s Webpage removal request tool: https://www.google.com/webmasters/tools/removals?pli=1 People often complain that once something is … Read more


Posted in Uncategorized | Tagged , | 1 Comment

Today is not a good day to be blacklisted

Today is definitely not a good day to be blacklisted as Google seems to be “busy”. We have been trying to help some clients to get their sites reviewed and removed from Google’s blacklist, but all we get at the … Read more


Posted in Uncategorized | Tagged , , | 2 Comments

Removing malware from a web site – Case Study

We deal with web-based malware every day here at Sucuri. Some are encrypted and very hard to detect and remove, but most of them are not. This case study is about the later, simpler, but very annoying web-based javascript malware … Read more


Posted in Uncategorized | Tagged , , | 5 Comments

Good bye securityfocus

I just read the sad announcement that SecurityFocus is going to be shut down (or phased out to sound more nice). The mailing lists will remain for a while, but all the rest will be moved to the Symantec web … Read more


Posted in Uncategorized | Tagged , | 1 Comment

Cloud-based (FILE) Integrity Monitoring

If you are a system administrator or have ever worked with security, you probably heard the terms file integrity monitoring or file integrity checking. If you didn’t, you at least heard of tripwire or OSSEC or AIDS (they are popular … Read more


Posted in Uncategorized | Tagged , | Leave a comment

Screenshot of the apache.org defacement (10 years ago)

We recently published a case study of the apache.org defacement that happened 10 years ago. You can read it here: Apache.org defaced – Security archive case study We didn’t publish the screenshot of the defacement, but our friend @EdiStrosar sent … Read more


Posted in Uncategorized | Tagged , , | Leave a comment