Malaysian Election and DDOSDavid DedeMay 4, 2013 Malaysia is having an election this weekend that has been surrounded by issues. We won’t go into the politics, but one of our client’s sites… Read the Post
W3 Total Cache and WP Super Cache Vulnerability Being Targeted in the WildTony PerezMay 4, 2013 As if on queue, almost 7 days since we released the post about the latest W3TC and WP Super Cache remote command execution vulnerability, we… Read the Post
Who Really Owns Your Website? “Please Stop Hotlinking My Easing Script — Use a Real CDN Instead.”Daniel CidMay 3, 2013 For the last few days, we have had some customers come to us worried thinking that their websites were compromised with some type of pop-up… Read the Post
Joomla Version 2.5.10 Released – Security UpdatesTony PerezApril 24, 2013 This morning the Joomla development team released a new version of the Joomla platform. This is a Security release, so please be sure to update… Read the Post
Update WP Super Cache and W3TC Immediately – Remote Code Execution Vulnerability DisclosedTony PerezApril 23, 2013 Shame on us for not catching this a month ago when it was first reported, but it seems that two of the biggest caching plugins… Read the Post
Cyber Criminals Take Advantage of Recent Boston Attack with SPAMTony PerezApril 17, 2013 It pains me to write about this at all, but as despicable as this might appear, cyber criminals have started to take advantage of those… Read the Post
The WordPress Brute Force Attack TimelineDaniel CidApril 16, 2013 Authored by Daniel Cid, Tony Perez. We have been blogging about the massive brute force attacks against WordPress websites over the past few days, today… Read the Post
WordPress Malicious Plugin – WPPPM – Abusing 404 Redirects with SEO PoisoningTony PerezApril 13, 2013 Bruno Borges, of our security team, came across an interesting case this week, in which a WordPress plugin was abusing the 404 rewrite rules and… Read the Post
Security EducationWebsite Security Brute Force Attacks and Their ConsequencesTony PerezApril 12, 2013 There is a lot of interesting discussion across the interwebs on the intention of the latest string of brute force attacks. While I can’t repudiate… Read the Post
Protecting Against WordPress Brute-Force AttacksTony PerezApril 11, 2013 It was not long ago that I was sitting on a call with other members of the WordPress community in which we were talking abou… Read the Post
WordPress Security Presentation by Tony PerezTony PerezApril 4, 2013 Tomorrow I will be flying to my hometown (Miami) to give a Website Security presentation to a bunch of enthusiastic online professionals at an event… Read the Post