Author Archives: Dre Armeda

DreamHost Security Issue Prompts FTP Password Resets

Yesterday on the DreamHost Status Blog, it was announced that all shell/FTP passwords would be reset due to what looks to be a security breach that was discovered on one of the DreamHost database servers. DreamHost looks to have done … Read more


Posted in DreamHost, FTP, hacked, htaccess, Passwords, pharma, sucuri | Tagged , , , , , | 1 Comment

Remove Unused/Testing/Debug Software From Your Site

We constantly see sites hacked due to vulnerabilities in various tools. In most cases, site owners don’t even realize they are there, or don’t even remember they were installed. For example, a site owner/manager has to make a quick modification … Read more


Posted in security, sucuri, wordpress | Tagged , , | Leave a comment

Keeping Your WordPress Themes Updated

We talk a lot about keeping WordPress and the plugins you use updated. That’s great and all, but you also have to remember that it doesn’t stop there, you have to keep your themes updated as well. Recently we found … Read more


Posted in vulnerability, wordpress | Tagged , | 1 Comment

Yet Another WordPress Security Post – Part One

At the end of October we had the opportunity to attend WordCamp Las Vegas. WordCamp’s are great events organized in various cities/countries by the WordPress community to discuss, learn, and teach all things WordPress. If you’ve never attended one, I … Read more


Posted in awareness, security, sucuri, wordpress | Tagged , , , | 5 Comments

ASIS International Website Blacklisted by Google

The official website (asisonline.org) of ASIS International, a major physical security association was hacked and blacklisted yesterday. Add another case to the list of sites using outdated and/or vulnerable applications. In the case of ASIS, they were running a vulnerable … Read more


Posted in blacklist, blacklisted, hacked, malware, openx | Tagged , , , , | 1 Comment

Fox News Website Hacked

We reported yesterday evening that various sites in the Fox web network have been infected with the Pharma Hack. It doesn’t stop there. I just ran some scans on the official Fox News site (foxnews.com) and here are the results:


Posted in hacked, malware, spam | Tagged , , | 5 Comments

Various Fox Websites Hit With Pharma Hack

If you’ve been following Sucuri, you’ve seen a bunch of discussion around the steadily growing Pharma Hack. As we continue research on the issue we find more and more variations of the exploit. Earlier this evening, we started noticing various … Read more


Posted in hacked, pharma, spam | Tagged , , , | 1 Comment

Bluehost Talks Down Malware Percentages – Offers Sucuri a Forum Ban

On Sunday we reported that a number of sites hosted by Bluehost had been hacked (including their CEO’s blog). On Monday while browsing through some of their forums, we noticed a thread regarding the exploit with remarks from forum moderators … Read more


Posted in awareness, bluehost, hacked, malware, sucuri | Tagged , , , | 25 Comments

The Mission of Security Awareness

This article was written by Christopher Vera, CISSP, HISP, GCFA, GLEG for Sucuri. Of all the elements of a successful cyber security program, security awareness is probably one of the least understood. Some cyber security professionals have even gone as … Read more


Posted in awareness, communications, corporate, enterprise, security, sucuri | Tagged , , , , | 6 Comments