Highly Effective Joomla Backdoor with Small ProfileFioravante SouzaFebruary 27, 2014 It feels like every day we’re finding gems, or what appear to be gems to us. We try to balance the use of the term,… Read the Post
Sucuri CloudProxy Website Firewall ImprovementsDaniel CidFebruary 25, 2014 If you are are a regular reader of our blog you probably know about our CloudProxy Website Firewall, it launched publicly a year ago. Since… Read the Post
Mysterious Zencart Redirects Leverage HTTP HeadersDenis SinegubkoFebruary 16, 2014 About a week ago we got an interesting Zencart case. Being that we don’t often write about Zencart we figured it’d be good time to… Read the Post
Security EducationWebsite Malware Infections Layer 7 DDOS – Blocking HTTP Flood AttacksDaniel CidFebruary 6, 2014 There are many types of Distributed Denial of Service (DDOS) attacks that can affect and bring down a website, and they vary in complexity and… Read the Post
Zero Day Vulnerability in OpenX Source 2.8.11 and Revive Adserver 3.0.1David DedeDecember 20, 2013 If you are using OpenX or the new Revive Adserver (fork of OpenX), you need to update it ASAP. Florian Sander discovered a serious SQL… Read the Post
Understanding Google’s Blacklist – Cleaning Your Hacked Website and Removing From BlacklistFioravante SouzaNovember 19, 2013 Today we found an interesting case where Google was blacklisting a client’s site but not sharing the reason why. The fact they were sharing very… Read the Post
Google Bots Doing SQL Injection AttacksDaniel CidNovember 5, 2013 One of the things we have to be very sensitive about when writing rules for our CloudProxy Website Firewall is to never block any major… Read the Post
Security Education Understanding Search Engine Warnings – Part I – Google – This Site May Be HackedDaniel CidOctober 29, 2013 If you have any questions about malware, blacklisting, or security in general, send them to us: contact@sucuri.net and we will answer here. For all the… Read the Post
Security EducationSucuri UpdatesWordPress Security Cleaning Up Your WordPress Site with the Free Sucuri PluginDaniel CidOctober 16, 2013 Update 9/9/16: We released a new guide to cleaning a hacked WordPress site with our plugin. If your site has been recently hacked and you… Read the Post
WHMCS SQL Injection Vulnerability in the WildDaniel CidOctober 7, 2013 A few days ago, a zero-day SQL injection vulnerability in WHMCS was disclosed by localhost.re, along with the exploit code. It was quickly patched by… Read the Post
CloudProxy WAF – September ReportDaniel CidSeptember 24, 2013 *By Tony Perez and Daniel Cid As many of you are aware we released a website protection tool, CloudProxy WAF/IDS, at the beginning of the… Read the Post