Blog Search
Like Box
Comments
- Dreamhost hacked, mass password-reset issued | ZDNet on DreamHost Security Issue Prompts FTP Password Resets
- Experiences with using GoDaddy, Linux Web Hosting | The (Unorganized) Musings of a Computer Scientist on GoDaddy store your passwords in clear-text and may try to SSH to your VPS without permission
- » Wordpress Security Best Practices & Plugins on Timthumb.php Mass Infection – Aftermath – Part I
- WordPress.org repository will not show plugins older than 2 years on WP-phpmyadmin WordPress plugin – Delete it now
- Wordpress News - The Best WordPress Tips and Tutorials of 2011Wordpress News on Cleaning up an infected website – Part I: WordPress and the Pharma Hack
Tags
alexa apache ask awareness backdoors blacklist blacklisted bluehost dns fox georgia godaddy google guides hacked history honeypot htaccess iis joomla logs malware malware_updates netsol openx oscommerce ossec passwords pharma phishing plugin review sbn scan security spam stats sucuri twitter vbulletin virus vulnerability walmart whois wordpressArchives
- January 2012 (6)
- December 2011 (4)
- November 2011 (4)
- October 2011 (7)
- September 2011 (8)
- August 2011 (16)
- July 2011 (5)
- June 2011 (10)
- May 2011 (10)
- April 2011 (15)
- March 2011 (18)
- February 2011 (13)
- January 2011 (7)
- December 2010 (7)
- November 2010 (9)
- October 2010 (12)
- September 2010 (10)
- August 2010 (7)
- July 2010 (10)
- June 2010 (15)
- May 2010 (19)
- April 2010 (16)
- March 2010 (15)
- February 2010 (8)
- January 2010 (7)
- December 2009 (4)
- November 2009 (1)
- October 2009 (2)
- September 2009 (1)
- August 2009 (6)
- July 2009 (11)
- June 2009 (7)
- May 2009 (4)
- April 2009 (1)
Monthly Archives: June 2010
Bluehost Talks Down Malware Percentages – Offers Sucuri a Forum Ban
On Sunday we reported that a number of sites hosted by Bluehost had been hacked (including their CEO’s blog). On Monday while browsing through some of their forums, we noticed a thread regarding the exploit with remarks from forum moderators … Read more
Posted in awareness, bluehost, hacked, malware, sucuri
Tagged disclosure, hacked, malware, security
25 Comments
Bluehost CEO blog & others exploited by domainameat.cc
We’re seeing that a good number of sites hosted at Bluehost have been hacked and infected with malware from domainameat.cc. The blog of Matt Heaton, CEO of Bluehost was also exploited (mattheaton.com). After analyzing some of these sites, they were … Read more
Brazilian Government Websites Hacked with Spam
In the last few months we’ve been tracking a common technique being used by attackers: They hack a web site and use that as part of their link farm to build page rank for them on search engines. We posted … Read more
Web sites hacked with malware from iopap.upperdarby26.com
We are seeing today a good number of sites hacked with malware from http://iopap.upperdarby26.com. The malicious javascript is added to the bottom of every index.php file and to the bottom of a few javascript files as well. The malware is … Read more
Posted in blacklist, hacked, malware, security
Tagged blacklisted, hacked, malware, security
2 Comments
Cleaning SPAM from your WordPress blog.
A common trend lately is SPAM getting added to WordPress blogs. Attackers are using this to increase their page rank on search engines like Google, Yahoo, etc. So, if you search for your site on Google do you see a … Read more
The Mission of Security Awareness
This article was written by Christopher Vera, CISSP, HISP, GCFA, GLEG for Sucuri. Of all the elements of a successful cyber security program, security awareness is probably one of the least understood. Some cyber security professionals have even gone as … Read more
Posted in awareness, communications, corporate, enterprise, security, sucuri
Tagged awareness, communications, enterprise, guest, security
6 Comments
Attack of WordPress blogs on Rackspace
Update: It is not a “mass” attack as we described. Sorry about that. A good number of sites were affected (we don’t have a clear number yet), but nothing massive or crazy as our post sounded. If you follow our … Read more
Mass infection of IIS/ASP sites – 2677.in/yahoo.js
A large number of sites have been hacked again in the last few hours with a malware script pointing to http://2677.in/yahoo.js . Not only small sites, but some big ones got hit as well. It is the same SQL injection … Read more
GoDaddy sites hacked with cloudisthebestnow
If you thought your problems at GoDaddy were over, well, not yet. We’ve confirmed that today at around 3pm EST, GoDaddy servers were hacked again. Malware pointing to cloudisthebestnow.com/kp.php was inserted on thousands of sites hosted by the provider. This … Read more
Posted in cloudisthebestnow, godaddy, hacked, malware, wordpress
Tagged cloudisthebestnow, godaddy, hacked, malware
12 Comments
Mass infection of IIS/ASP sites – robint.us
An incredibly large number of sites have been hacked in the last day with a malware script pointing to http://ww.robint.us/u.js. Not only small sites, but some big ones got hit as well: http://www.intljobs.org (still hacked) http://www.servicewomen.org (still hacked) http://online.wsj.com (partially … Read more