We just added two tools to generate OSSEC rules online.
You May Also Like
Fake Google Analytics tracking code leading to Adware
- January 31, 2017
Our Incident Response process makes sure we remove all malicious files and other small pieces of code inserted in good files that could be used…
Magento Multiversion (1.x/2.x) Backdoor
- August 26, 2020
The Magento 1 EOL date has already passed, however it’s evident that a large number of websites will continue to use it for the foreseeable…
WooCommerce Credit Card Skimmers Concealed In Fake Images
- May 3, 2022
Our research and remediation teams have noticed an increase in WooCommerce credit card skimmers on client sites over the past few years, as detailed in…
P.A.S. Fork v. 1.0 — A Web Shell Revival
- October 26, 2020
A PHP web shell containing multiple functions can easily consist of thousands of lines of code, so it’s no surprise that attackers often reuse the…
Magento Supply Chain Attack Targets Extension Developer FishPig
- September 15, 2022
Magento store owners using the popular FishPig extensions should be wary of a recent supply chain attack which compromised their software repository. FishPig released a…
Backdoor Obfuscation: tempnam & URL Encoding
- September 28, 2020
In an attempt to avoid detection, attackers and malware authors are always experimenting with different methods to obfuscate their malicious code. During a recent investigation,…
Malicious Injection Redirects Traffic via Parked Domain
- July 13, 2023
During a recent investigation, our malware remediation team encountered a variant of a common malware injection that has been active since at least 2017. The…
2021 Threat Report Webinar
- June 23, 2022
The threat landscape is constantly shifting. As attackers continue to hone their tools and exploit new vulnerabilities, our team works diligently to identify and analyze…
The Importance of Website & Server Logs
- August 11, 2022
Have you ever looked at your server or website logs and realized that they make absolutely no sense to you? Or thought that logs just…
Skimmers and Phishing
- August 14, 2019
Recently, we shared a post about a network of domains used in a JavaScript credit card stealing malware campaign. These domains are all hosted on…









