Monthly Archives: April 2011

WordPress 3.1.2 released – Security fixes

The WordPress team just released a new version of WordPress (3.1.2) to fix a security issue where contributor-level users were allowed to publish posts. It is a small release, and everyone using WordPress should upgrade to it! From the WordPress … Read more


Posted in vulnerability, wordpress | Tagged , | 1 Comment

Jquery4html.co.cc – Malware update – Fake AV Redirections

Weekly (kinda daily) malware update. You can track all our updates by following our malware_updates category. *If your site has been affected with any of these issues, contact us at support@sucuri.net or visit http://sucuri.net to get help, or if you … Read more


Posted in malware, malware_updates | Tagged , | 1 Comment

Mass infections – globalpoweringgathering.com

We first detected malware from globalpoweringgathering.com almost a month ago, and posted on our blog about it. But in the last few days, we started to see a big increase in the number of sites infected with it. We were … Read more


Posted in blacklisted, hacked, malware, malware_updates | Tagged , , , | 3 Comments

CBS Money Watch / ZDnet hacked and blacklisted by Google

We are getting reports that the CBS Money Watch and some ZDNet web sites are currently distributing malware and blacklisted by Google. We are still investigating it, but if you try to visit the CBS Money watch site (moneywatch.com), you … Read more


Posted in blacklisted, hacked | Tagged , | 2 Comments

Ask Sucuri: What is the most common type of malware out there?

If you have any questions about malware, blacklisting, or security in general, send it to us: contact@sucuri.net and we will answer here. For all the “ask sucuri” answers, go here. Question: What is the most common type of malware (on … Read more


Posted in ask, malware, malware_updates, sucuri | Tagged , , | 3 Comments

CreateCSS malware update

We have been talking about this CreateCSS malware for a little while, but recently we started to see a shift on how the attackers are using it. *If you don’t remember what it is, the CreateCSS malware has been used … Read more


Posted in hacked, malware, malware_updates | Tagged , , | Leave a comment

Automattic / WordPress hacked – Security incident

The guys from Automattic (WordPress) posted today a brief statement about a security incident that they suffered. Tough note to communicate today: Automattic had a low-level (root) break-in to several of our servers, and potentially anything on those servers could … Read more


Posted in hacked, vulnerability, wordpress | Tagged , , | 3 Comments

Link injection on hacked WordPress sites – Blackhat SEO spam

The last few months we’ve been tracking, and helping webmasters affected by a very large blackhat SEO spam campaign initiated by basicpills.com, and many other domains located at 212.117.161.190. This campaign has infected thousands of WordPress sites, and has injected … Read more


Posted in hacked, malware, malware_updates, pharma, spam, wordpress | Tagged , , , , , | 8 Comments

Database Injection on Joomla Websites – yourstatscounter dot cz dot cc

It seems that a good amount of Joomla sites are being infected with malware from the infamous “.cc” domains. All of the hacked sites have the malicious code injected directly in to their databases (SQL injection), via an unknown source … Read more


Posted in joomla, malware, malware_updates | Tagged , , | Leave a comment

WordPress 3.1.1 is available (security fixes)

There is a new version of WordPress available (3.1.1) that includes multiple security fixes. These are the changes according to WordPress.org: Some security hardening to media uploads, performance improvements, fixes for IIS6 support and fixes for taxonomy and PATHINFO (/index.php/) … Read more


Posted in security, vulnerability, wordpress | Tagged , , | 1 Comment