Sucuri Blog
  • Products
    • Website Security Platform
    • Website Firewall (WAF)
    • Multi-Site plans
    • Custom & Enterprise Plans
    • Partnerships
  • Features
    • Detection
      Website Monitoring & Alerts
    • Protection
      Future Website Hacks
    • Performance
      Speed Up Your Website
    • Response
      Help For Hacked Websites
    • Backups
      Disaster Recovery Plan
  • Resources
    • Guides
    • Webinars
    • Infographics
    • Blog
    • SiteCheck
    • Reports
    • Email Courses
  • Pricing
  • Immediate Help
  • Login
Sucuri Blog
  • Products
    • Website Security Platform
    • Website Firewall (WAF)
    • Multi-Site plans
    • Custom & Enterprise Plans
    • Partnerships
  • Features
    • Detection
      Website Monitoring & Alerts
    • Protection
      Future Website Hacks
    • Performance
      Speed Up Your Website
    • Response
      Help For Hacked Websites
    • Backups
      Disaster Recovery Plan
  • Resources
    • Guides
    • Webinars
    • Infographics
    • Blog
    • SiteCheck
    • Reports
    • Email Courses
  • Pricing
  • Immediate Help
  • Login
  • Immediate Help
Login
Login

New Customer?

Sign up now.
  • Submit a ticket
  • Knowledge base
  • Chat now

Browsing Category

Vulnerability Disclosure

254 posts

Joomla JomSocial Remote Code Execution Vulnerability

  • Daniel Cid
  • February 10, 2014
The JomSocial team just released an update that fixes a very serious remote code execution vulnerability that affects any JomSocial version older than 3.1.0.4. From…
Read the Post

Recent OptimizePress Vulnerability Being Mass Infected

  • Daniel Cid
  • January 17, 2014
A few weeks ago we wrote about a file upload vulnerability in the OptmizePress theme. We were seeing a few sites being compromised by it,…
Read the Post

Security Issue on vBulletin uploader.swf

  • David Dede
  • January 7, 2014
The vBulletin team recently disclosed a XSS (cross site scripting) vulnerability in the uploader.swf file that is included by default on vBulletin 4 and 5.…
Read the Post

Zero Day Vulnerability in OpenX Source 2.8.11 and Revive Adserver 3.0.1

  • David Dede
  • December 20, 2013
If you are using OpenX or the new Revive Adserver (fork of OpenX), you need to update it ASAP. Florian Sander discovered a serious SQL…
Read the Post

WordPress OptimizePress Theme – File Upload Vulnerability

  • Denis Sinegubko
  • December 12, 2013
We’re a few days short on this, but it’s still worth releasing as the number of attacks against this vulnerability are increasing ten-fold. The folks…
Read the Post

Case Study: Analyzing a WordPress Attack – Dissecting the webr00t cgi shell – Part I

  • Tony Perez
  • November 8, 2013
November 1st started like any other day on the web. Billions of requests were being shot virtually between servers in safe and not so safe…
Read the Post

Server Update Time: OpenSSH Vulnerability Disclosed

  • David Dede
  • November 8, 2013
The OpenSSH team just released a security advisory about a vulnerability affecting both OpenSSH 6.2 and 6.3. If you are not familiar with OpenSSH, it’s…
Read the Post

WHMCS SQL Injection Vulnerability in the Wild

  • Daniel Cid
  • October 7, 2013
A few days ago, a zero-day SQL injection vulnerability in WHMCS was disclosed by localhost.re, along with the exploit code. It was quickly patched by…
Read the Post

Potential vBulletin Exploit (4.1+ and 5+)

  • Daniel Cid
  • August 28, 2013
The vBulletin team just posted a pre-disclosure warning on their announcements forum about a possible exploit in versions 4.1+ and 5+ of vBulletin. They don’t…
Read the Post

Joomla Media Manager Attacks in the Wild

  • Daniel Cid
  • August 16, 2013
If you are using Joomla and didn’t update your site recently, you better stop doing whatever you are doing, and update it now. There is…
Read the Post

The Dangers External Services Present To Your Website

  • Tony Perez
  • August 15, 2013
Today the Washington Post reported that they were victims of hack, orchestrated by the Syrian Electronic Army. This attack is interesting because it sheds light…
Read the Post
Search
Sucuri Sidebar Malware Removal to Signup Page
Sucuri Logo

Let’s Connect

Products
Website Firewall Website Security Platform WordPress Security Website Backups Hack Assistance Pricing
Solutions
DDoS Protection Malware Detection Malware Removal Malware Prevention Blacklist Removal SEO Spam Removal
USE CASES
Developers Ecommerce Agency Plans Enterprise Services HTTPS/2 Virtual Patching
Support
Knowledge Base SiteCheck Guides Research Labs Report Abuse Status Report
Company
About Sucuri Contact Blog Referral Partners Testimonials
Terms of Use Privacy Policy Do Not Sell My Personal Information Frequently Asked Questions

© 2025 GoDaddy Mediatemple, Inc., d/b/a Sucuri. All rights reserved.

back to top

'