Sucuri Blog
  • Products
    • Website Security Platform
    • Website Firewall (WAF)
    • Multi-Site plans
    • Custom & Enterprise Plans
    • Partnerships
  • Features
    • Detection
      Website Monitoring & Alerts
    • Protection
      Future Website Hacks
    • Performance
      Speed Up Your Website
    • Response
      Help For Hacked Websites
    • Backups
      Disaster Recovery Plan
  • Resources
    • Guides
    • Webinars
    • Infographics
    • Blog
    • SiteCheck
    • Reports
    • Email Courses
  • Pricing
  • Immediate Help
  • Login
Sucuri Blog
  • Products
    • Website Security Platform
    • Website Firewall (WAF)
    • Multi-Site plans
    • Custom & Enterprise Plans
    • Partnerships
  • Features
    • Detection
      Website Monitoring & Alerts
    • Protection
      Future Website Hacks
    • Performance
      Speed Up Your Website
    • Response
      Help For Hacked Websites
    • Backups
      Disaster Recovery Plan
  • Resources
    • Guides
    • Webinars
    • Infographics
    • Blog
    • SiteCheck
    • Reports
    • Email Courses
  • Pricing
  • Immediate Help
  • Login
  • Immediate Help
Login
Login

New Customer?

Sign up now.
  • Submit a ticket
  • Knowledge base
  • Chat now

Browsing Category

Sucuri Labs

336 posts
Trojan Spyware and BEC Attacks
  • Security Education
  • Sucuri Labs
  • Website Malware Infections
  • Website Security

Malicious Curl Downloader

  • Krasimir Konov
  • June 2, 2020
If you want to easily download and save remote files, curl is an excellent command-line tool for Windows and Unix. It supports HTTP, HTTPS, and…
Read the Post
Labs Note
  • Security Education
  • Sucuri Labs
  • Vulnerability Disclosure
  • Website Malware Infections

Vulnerabilities Digest: May 2020

  • John Castro
  • May 29, 2020
Relevant Plugins and Vulnerabilities: Plugin Vulnerability Patched Version Installs WP Product Review Unauthenticated Stored XSS 3.7.6 40000 Form Maker by 10Web Authenticated SQL Injection —…
Read the Post
Labs Note
  • Sucuri Labs
  • Vulnerability Disclosure
  • WordPress Security

Unauthenticated Stored Cross Site Scripting in WP Product Review

  • John Castro
  • May 14, 2020
During a routine research audit for our Sucuri Firewall, we discovered an Unauthenticated Persistent Cross-Site Scripting (XSS) affecting 40,000+ users of the WP Product Review…
Read the Post
  • Sucuri Labs
  • Website Malware Infections
  • Website Security

B374k Web Shell Packer

  • Luke Leal
  • May 13, 2020
PHP web shells are a type of backdoor which, when left on compromised websites, allow attackers to maintain unauthorized access after initial compromise. To further…
Read the Post
Labs Note
  • Ecommerce Security
  • Magento Security
  • Sucuri Labs
  • Vulnerability Disclosure
  • Website Malware Infections
  • Website Security

Vulnerabilities Digest: April 2020

  • John Castro
  • May 1, 2020
Relevant Plugins and Vulnerabilities: Plugin Vulnerability Patched Version Installs Widget Settings Importer/Exporter Stored XSS Closed 40000 Accordion Stored/Reflected XSS 2.2.9 30000 Support Ticket System By…
Read the Post
Labs Note
  • Sucuri Labs
  • Website Malware Infections
  • Website Security
  • WordPress Security

WordPress Admin Login Stealer

  • Krasimir Konov
  • April 27, 2020
During an investigation, we identified a WordPress login stealer using the PHP functions curl and file_get_contents. The malicious code was injected into the core file…
Read the Post
Labs Note
  • Ecommerce Security
  • Magento Security
  • Sucuri Labs

Web Skimmer With a Domain Name Generator – Follow Up

  • Denis Sinegubko
  • April 23, 2020
This note is a follow up to our recent post about a web skimmer that uses a dynamic domain name generating algorithm. This week, analyst…
Read the Post
Labs Note
  • Sucuri Labs
  • Website Malware Infections
  • Website Security
  • WordPress Security

Fake M-Shield WordPress Plugin

  • Krasimir Konov
  • April 21, 2020
During a recent malware investigation, we found a fake WordPress plugin called M-Shield. We also found almost an identical plugin under the name kingof, with…
Read the Post
Labs Note
  • Magento Security
  • Sucuri Labs
  • Website Malware Infections

Magento JavaScript Skimmer Targets Tarjetas de Crédito

  • Luke Leal
  • April 17, 2020
A website owner recently contacted us regarding a payment problem on their Magento website. A suspicious payment card form was loading for customers who were…
Read the Post
Labs Note
  • Sucuri Labs
  • Website Malware Infections
  • Website Security

Spl_autoload Backdoor

  • Denis Sinegubko
  • April 8, 2020
With backdoors, one of the main challenges for malware authors is to execute code without using obvious functions (such as eval, asset, create_function, etc.) that…
Read the Post
Labs Note
  • Sucuri Labs
  • Website Malware Infections
  • Website Security

Phishing with a COVID-19 Lure

  • Luke Leal
  • April 6, 2020
It’s not uncommon to see criminals use disasters or current events to enhance their social engineering tactics, and the recent COVID-19 pandemic is no different.…
Read the Post
Search
Sucuri Sidebar Malware Removal to Signup Page
Sucuri Logo

Let’s Connect

Products
Website Firewall Website Security Platform WordPress Security Website Backups Hack Assistance Pricing
Solutions
DDoS Protection Malware Detection Malware Removal Malware Prevention Blacklist Removal SEO Spam Removal
USE CASES
Developers Ecommerce Agency Plans Enterprise Services HTTPS/2 Virtual Patching
Support
Knowledge Base SiteCheck Guides Research Labs Report Abuse Status Report
Company
About Sucuri Contact Blog Referral Partners Testimonials
Terms of Use Privacy Policy Do Not Sell My Personal Information Frequently Asked Questions

© 2025 GoDaddy Mediatemple, Inc., d/b/a Sucuri. All rights reserved.

back to top

'