Sucuri Blog
  • Products
    • Website Security Platform
    • Website Firewall (WAF)
    • Multi-Site plans
    • Custom & Enterprise Plans
    • Partnerships
  • Features
    • Detection
      Website Monitoring & Alerts
    • Protection
      Future Website Hacks
    • Performance
      Speed Up Your Website
    • Response
      Help For Hacked Websites
    • Backups
      Disaster Recovery Plan
  • Resources
    • Guides
    • Webinars
    • Infographics
    • Blog
    • SiteCheck
    • Reports
    • Email Courses
  • Pricing
  • Immediate Help
  • Login
Sucuri Blog
  • Products
    • Website Security Platform
    • Website Firewall (WAF)
    • Multi-Site plans
    • Custom & Enterprise Plans
    • Partnerships
  • Features
    • Detection
      Website Monitoring & Alerts
    • Protection
      Future Website Hacks
    • Performance
      Speed Up Your Website
    • Response
      Help For Hacked Websites
    • Backups
      Disaster Recovery Plan
  • Resources
    • Guides
    • Webinars
    • Infographics
    • Blog
    • SiteCheck
    • Reports
    • Email Courses
  • Pricing
  • Immediate Help
  • Login
  • Immediate Help
Login
Login

New Customer?

Sign up now.
  • Submit a ticket
  • Knowledge base
  • Chat now

Browsing Category

Security Advisory

239 posts
  • Security Advisory
  • WordPress Security

Learning From Buggy WordPress Wp-login Malware

  • Denis Sinegubko
  • October 31, 2016
When a site gets hacked, the attack doesn’t end with the malicious payload or spam content. Hackers know that most website administrators will clean up…
Read the Post
  • Security Advisory
  • Website Malware Infections
  • WordPress Security

A Plugin’s Expired Domain Poses a Security Threat to Websites

  • Krasimir Konov
  • August 3, 2016
Do you keep all of your website software (including third-party themes, plugins, and components) up to date? You should! We always recommend this to our…
Read the Post
  • Security Advisory

Fake FreeDNS Used to Redirect Traffic to Malicious Sites

  • Denis Sinegubko
  • July 29, 2016
During the last couple of days, we performed a few similar cleanup requests where sites occasionally redirected visitors to malicious sites that displayed ads, spam,…
Read the Post
Phishing Targets Ecommerce Checkout Pages Redirected
  • Ecommerce Security
  • Security Advisory
  • Website Malware Infections

Phishing Attacks Target Ecommerce Checkout Pages

  • Denis Sinegubko
  • July 19, 2016
Hunting credit card details on compromised ecommerce websites has become popular over the last two years. We have reported multiple cases in the past where…
Read the Post
  • Security Advisory
  • Website Malware Infections

Realstatistics Malware Campaign Uses Fake Analytics Sites

  • Denis Sinegubko
  • July 8, 2016
In this post we’ll show you the tactics employed by the realstatistics malware campaign to make their injections seem less suspicious. The injection looks like…
Read the Post
  • Joomla Security
  • Security Advisory
  • Website Malware Infections
  • WordPress Security

Realstatistics Malware Campaign Leads To Ransomware

  • Daniel Cid
  • July 6, 2016
Our Incident Response Team (IRT) has been tracking a mass infection campaign over the last two weeks ( codenamed “Realstatistics“). This campaign has compromised thousands of websites built…
Read the Post
  • Security Advisory
  • Security Education

Domain Renewal Phishing Scams

  • Alycia Mitchell
  • June 21, 2016
Update: I received another letter this year (May 2017). Seems iDNS Canada is still in business. When I received a letter in the mail asking…
Read the Post
  • Security Advisory
  • Vulnerability Disclosure
  • WordPress Security

WP Mobile Detector Vulnerability Being Exploited in the Wild

  • Douglas Santos
  • June 2, 2016
***Update: The WP Mobile Detector plugin has been patched to address the vulnerability. Please update as soon as possible. Note that the latest version don’t…
Read the Post
  • Drupal Security
  • Security Advisory
  • Vulnerability Disclosure

Drupal SQLi (Drupalgeddon) Attack Trend CVE-2014-3704 / SA-CORE-2014-005

  • Daniel Cid
  • May 31, 2016
It has been over 19 months since Drupalgeddon, which refers to Drupal’s Security Advisory (SA) SA-CORE-2014-005. For those unfamiliar with it, it was a highly…
Read the Post
  • Security Advisory
  • Vulnerability Disclosure
  • WordPress Security

Security Advisory: Stored XSS in Jetpack

  • Marc-Alexandre Montpas
  • May 27, 2016
During regular research audits for our Sucuri Firewall (Cloud WAF), we discovered a stored XSS vulnerability affecting the WordPress Jetpack plugin, currently installed on more…
Read the Post
  • Security Advisory
  • Security Education
  • Vulnerability Disclosure

ImageMagick Remote Command Execution Vulnerability

  • Daniel Cid
  • May 4, 2016
ImageMagick is a popular software used to convert, edit and manipulate images. It has libraries for all common programming languages, including PHP, Python, Ruby and…
Read the Post
Search
Sucuri Sidebar Malware Removal to Signup Page
Sucuri Logo

Let’s Connect

Products
Website Firewall Website Security Platform WordPress Security Website Backups Hack Assistance Pricing
Solutions
DDoS Protection Malware Detection Malware Removal Malware Prevention Blacklist Removal SEO Spam Removal
USE CASES
Developers Ecommerce Agency Plans Enterprise Services HTTPS/2 Virtual Patching
Support
Knowledge Base SiteCheck Guides Research Labs Report Abuse Status Report
Company
About Sucuri Contact Blog Referral Partners Testimonials
Terms of Use Privacy Policy Do Not Sell My Personal Information Frequently Asked Questions

© 2025 GoDaddy Mediatemple, Inc., d/b/a Sucuri. All rights reserved.

back to top

'