• Skip to primary navigation
  • Skip to content
  • Skip to primary sidebar
  • Skip to footer

Sucuri Blog

Website Security News

  • Products
    • Website Security Platform
    • Website Firewall (WAF)
    • Enterprise Website Security
    • Multisite Solutions
  • Features
    • Detection
    • Protection
    • Performance
    • Response
    • Backups
  • Partners
    • Agency Solutions
    • Partners
    • Referral Program
    • Ecommerce
  • Resources
    • Guides
    • Webinars
    • Infographics
    • SiteCheck
    • Reports
    • Email Courses
  • Immediate Help
  • Login

Search Results for: TimThumb

TimThumb Vulnerability: Throwback Thursday

August 29, 2019Denis Sinegubko

TimThumb Attacks: The Scale of Legacy Malware Infections

These days, we consider a malware campaign massive if it affects a couple thousand websites. However, back in the day when Sucuri first started its operations, the scale of infections was significantly larger — and it was quite typical to see hundreds of thousands of…

Read More about TimThumb Attacks: The Scale of Legacy Malware Infections

June 25, 2014Daniel Cid

TimThumb WebShot Code Execution Exploit (Zeroday)

If you are still using Timthumb after the serious vulnerability that was found on it last year, you have one more reason to be concerned. A new zeroday was just…

Read More about TimThumb WebShot Code Execution Exploit (Zeroday)

June 26, 2012Daniel Cid

Uploadify, Uploadify and Uploadify – The New TimThumb?

We are seeing a lot of noise again regarding the Uploadify script vulnerabilities affecting some WordPress themes/plugins. If you are not familiar, Uploadify allows anyone to upload anything they want…

Read More about Uploadify, Uploadify and Uploadify – The New TimThumb?

May 31, 2012Daniel Cid

List of Domains Hosting Webshells for Timthumb Attacks

We have been tracking TimThumb related attacks for a while and they are still at full force (yes, some people are still using the outdated versions and getting compromised). Just…

Read More about List of Domains Hosting Webshells for Timthumb Attacks

October 28, 2011David Dede

Timthumb.php Mass Infection – Aftermath – Part I

If you use WordPress you’re probably aware of the mass infection caused by a vulnerability in the timthumb.php script, a photo manipulation script included in many themes and plugins. Sites…

Read More about Timthumb.php Mass Infection – Aftermath – Part I

September 14, 2011David Dede

TimThumb.php backdoor

If your site got compromised lately with the TimThumb.php vulnerability, make sure to check that script to see if it was not modified to act as a backdoor as well….

Read More about TimThumb.php backdoor

August 24, 2011David Dede

TimThumb.php Attacks – Now Being Used for Blackhat Spam SEO and Might Break Your Site

We have been talking a lot lately about the Timthumb.php vulnerability and the importance of updating that script as soon as possible. Sites that didn’t update it are getting compromised…

Read More about TimThumb.php Attacks – Now Being Used for Blackhat Spam SEO and Might Break Your Site

August 24, 2011David Dede

TimThumb.php attacks – Now using googlesafebrowsing dot com

We have been talking a lot lately about the Timthumb.php vulnerability and the importance of updating the script as soon as possible. Sites that didn’t update it are getting compromised…

Read More about TimThumb.php attacks – Now using googlesafebrowsing dot com

August 23, 2011David Dede

Mass Infection of WordPress Sites Due to TimThumb ( counter-wordpress dot com )

Many people are asking us about this “counter-wordpress.com” type of malware, so we will post some details here. Our scanner has been identifying it for a while, so if you…

Read More about Mass Infection of WordPress Sites Due to TimThumb ( counter-wordpress dot com )

August 17, 2011David Dede

Attacks Against Timthumb.php in the Wild – List of Themes and Plugins Being Scanned

We are seeing large scale attacks against the vulnerable timthumb.php script in the wild. Thousands of sites are getting compromised and if you have it in your WordPress site, you…

Read More about Attacks Against Timthumb.php in the Wild – List of Themes and Plugins Being Scanned

August 16, 2011David Dede

TimThumb.php Vulnerability Not Only Affecting Themes – Plugins too

The Timthumb.php vulnerability is being used in the wild to hack and infect thousands of WordPress sites. Hopefully everyone is checking their themes and updating the script to make sure…

Read More about TimThumb.php Vulnerability Not Only Affecting Themes – Plugins too

Primary Sidebar

Socialize With Sucuri

We're actively engaged across multiple platforms. Follow us and let's connect!

  • Facebook
  • Twitter
  • LinkedIn
  • YouTube
  • Instagram
  • RSS Feed

Join Over 20,000 Subscribers!

Sucuri Sidebar Malware Removal to Signup Page

Footer

Products

  • Website Firewall
  • Website AntiVirus
  • Website Backups
  • WordPress Security
  • Enterprise Services

Solutions

  • DDos Protection
  • Malware Detection
  • Malware Removal
  • Malware Prevention
  • Blacklist Removal

Support

  • Blog
  • Knowledge Base
  • SiteCheck
  • Research Labs
  • FAQ

Company

  • About
  • Media
  • Events
  • Employment
  • Contact
  • Testimonials
  • Facebook
  • Twitter
  • LinkedIn
  • Instagram

Customer Login

Sucuri Home

  • Terms of Use
  • Privacy Policy
  • Frequently Asked Questions

© 2023 Sucuri Inc. All rights reserved

Sucuri Cookie Policy
See our policy>>

Our website uses cookies, which help us to improve our site and enables us to deliver the best possible service and customer experience.