Blog Search
Like Box
Comments
- The WPCandy Podcast #32: "Uncle Ben's plugin list" | WPCandy on Official WordPress Plugin Directory – Forcing Plugin Updates
- Is your website clean? | Life Currents on Links Injection on WordPress – Blackhat SEO Spam (basicpills) update
- Technology News on Blog Comments – Analysing 100,000 Comments and Spammers
- user on Removing Malware from a WordPress blog – Case Study
- Brand Development on Walmart web site hacked and hosting spam
Tags
alexa apache ask awareness backdoors blacklist blacklisted bluehost data dns education fox godaddy google guides hacked history honeypot htaccess iis joomla logs malware malware_updates netsol openx oscommerce ossec passwords pharma phishing php plugin scan security spam stats sucuri twitter updates vbulletin virus vulnerability walmart wordpressArchives
- May 2012 (7)
- April 2012 (15)
- March 2012 (12)
- February 2012 (6)
- January 2012 (6)
- December 2011 (4)
- November 2011 (4)
- October 2011 (7)
- September 2011 (8)
- August 2011 (16)
- July 2011 (5)
- June 2011 (10)
- May 2011 (10)
- April 2011 (15)
- March 2011 (18)
- February 2011 (13)
- January 2011 (7)
- December 2010 (7)
- November 2010 (9)
- October 2010 (12)
- September 2010 (10)
- August 2010 (7)
- July 2010 (10)
- June 2010 (15)
- May 2010 (19)
- April 2010 (16)
- March 2010 (15)
- February 2010 (8)
- January 2010 (7)
- December 2009 (4)
- November 2009 (1)
- October 2009 (2)
- September 2009 (1)
- August 2009 (6)
- July 2009 (11)
- June 2009 (7)
- May 2009 (4)
- April 2009 (1)
Monthly Archives: August 2011
TimThumb.php Attacks – Now Being Used for Blackhat Spam SEO and Might Break Your Site
We have been talking a lot lately about the Timthumb.php vulnerability and the importance of updating that script as soon as possible. Sites that didn’t update it are getting compromised very easily. We explained it in more detail here: Mass … Read more
Posted in hacked, malware, malware_updates, spam, vulnerability, wordpress
Tagged hacked, malware, malware_updates, spam, vulnerability, wordpress
13 Comments
TimThumb.php attacks – Now using googlesafebrowsing dot com
We have been talking a lot lately about the Timthumb.php vulnerability and the importance of updating the script as soon as possible. Sites that didn’t update it are getting compromised very easily. We explained it in more detail here: Mass … Read more
Posted in hacked, malware, malware_updates, vulnerability, wordpress
Tagged hacked, malware, malware_updates, vulnerability, wordpress
5 Comments
Mass Infection of WordPress Sites Due to TimThumb ( counter-wordpress dot com )
Many people are asking us about this “counter-wordpress.com” type of malware, so we will post some details here. Our scanner has been identifying it for a while, so if you think your site is compromised, just check it in there. … Read more
Posted in hacked, malware, malware_updates, vulnerability, wordpress
Tagged hacked, malware, malware_updates, vulnerability, wordpress
26 Comments
Attacks Against Timthumb.php in the Wild – List of Themes and Plugins Being Scanned
We are seeing large scale attacks against the vulnerable timthumb.php script in the wild. Thousands of sites are getting compromised and if you have it in your WordPress site, you better get it fixed right now! After a few days … Read more
Posted in hacked, malware, malware_updates, vulnerability, wordpress
Tagged hacked, malware, malware_updates, vulnerability, wordpress
15 Comments
WordPress sites with .htaccess hacked
The TimThumb.php vulnerability is causing a lot of WordPress sites to get compromised with the superpuperdomain.com and superpuperdomain2.com remote JavaScript injection. However, that’s not all that it is doing. On many of the sites we are analyzing, the .htaccess file … Read more
Posted in hacked, htaccess, malware, malware_updates, wordpress
Tagged hacked, htaccess, malware, malware_updates, wordpress
20 Comments
TimThumb.php Vulnerability Not Only Affecting Themes – Plugins too
The Timthumb.php vulnerability is being used in the wild to hack and infect thousands of WordPress sites. Hopefully everyone is checking their themes and updating the script to make sure it is not vulnerable. This is wishful thinking. Unfortunately, the … Read more
Posted in hacked, malware, malware_updates, plugin, wordpress
Tagged hacked, malware, malware_updates, plugin, vulnerability, wordpress
4 Comments
Non-Stop Attacks Against osCommerce – Time to Take Action
The malware attacks against osCommerce sites are still going at full force and the site owners have to take action to secure and update their sites as soon as possible. Think about that, with so many valuable targets (online stores) … Read more
Posted in hacked, malware, malware_updates, oscommerce, vulnerability
Tagged hacked, malware, malware_updates, oscommerce, vulnerability
1 Comment
Update to the Superpuperdomain2.com malware
Just a quick update to the Superpuperdomain2.com/Superpuperdomain.com malware infection that has been affecting thousands of WordPress sites with the vulnerable timthumb.php script. You can read more about it here: http://blog.sucuri.net/2011/08/wordpress-sites-hacked-with-superpuperdomain2-com.html But now the attackers are also adding the following code … Read more
Posted in hacked, malware, malware_updates, vulnerability, wordpress
Tagged hacked, malware, malware_updates, vulnerability
3 Comments
WordPress Sites Hacked with Superpuperdomain2.com
A few days ago we posted about a series of attacks that were happening against WordPress sites running the vulnerable timthumb.php script. We detected thousands of sites compromised with it and now are are seeing a small change in the … Read more
Posted in hacked, malware, malware_updates, vulnerability, wordpress
Tagged hacked, malware, malware_updates, vulnerability, wordpress
7 Comments
WordPress Sites Hacked with Superpuperdomain dot com (Attacking Timthumb.php)
We are seeing a large number of WordPress sites compromised with a malicious JavaScript loading from superpuperdomain.com/count.php. That JavaScript redirects visitors that were going to the WordPress site to fake search engines. This is what shows up at the bottom … Read more