Sucuri Blog
  • Products
    • Website Security Platform
    • Website Firewall (WAF)
    • Multi-Site plans
    • Custom & Enterprise Plans
    • Partnerships
  • Features
    • Detection
      Website Monitoring & Alerts
    • Protection
      Future Website Hacks
    • Performance
      Speed Up Your Website
    • Response
      Help For Hacked Websites
    • Backups
      Disaster Recovery Plan
  • Resources
    • Guides
    • Webinars
    • Infographics
    • Blog
    • SiteCheck
    • Reports
    • Email Courses
  • Pricing
  • Immediate Help
  • Login
Sucuri Blog
  • Products
    • Website Security Platform
    • Website Firewall (WAF)
    • Multi-Site plans
    • Custom & Enterprise Plans
    • Partnerships
  • Features
    • Detection
      Website Monitoring & Alerts
    • Protection
      Future Website Hacks
    • Performance
      Speed Up Your Website
    • Response
      Help For Hacked Websites
    • Backups
      Disaster Recovery Plan
  • Resources
    • Guides
    • Webinars
    • Infographics
    • Blog
    • SiteCheck
    • Reports
    • Email Courses
  • Pricing
  • Immediate Help
  • Login
  • Immediate Help
Login
Login

New Customer?

Sign up now.
  • Submit a ticket
  • Knowledge base
  • Chat now

Browsing Category

Vulnerability Disclosure

254 posts

Ruby on Rails Vulnerability Leads to Remote Command Execution on Servers

  • Tony Perez
  • January 10, 2013
As always, the year is kicking off with a bang. This is a public service announcement to get the word out on a very serious…
Read the Post

W3 Total Cache Implementation Vulnerability

  • Daniel Cid
  • December 25, 2012
Just in time for Christmas, it was announced on the full disclosure list a security (configuration/implementation) bug on W3 Total cache (W3TC), one of the…
Read the Post

PSA: December Zero Day’s Announced – MySQL, FreeSSH, Free FTPD

  • Tony Perez
  • December 3, 2012
So it looks like we’re closing out the year in style in 2012. This weekend a number of new, very serious, zero-day vulnerabilities were released…
Read the Post

SFTP/FTP Password Exposure via sftp-config.json

  • Daniel Cid
  • November 23, 2012
Have you heard of the file sftp-config.json? You haven’t? Neither did we until a few weeks ago. It is used by some SFTP/FTP clients (Sublime…
Read the Post

PSA: Skype Vulnerability Released

  • Tony Perez
  • November 14, 2012
While not exactly related to web security, it’s always good to take a minute to look at the web’s cousin, the desktop. On November 13th…
Read the Post

Joomla 2.5.8 and 3.0.2 Released (Security Updates)

  • David Dede
  • November 8, 2012
Joomla 2.5.8 and 3.0.2 were just released today fixing a medium severity security bug related to a clickjacking/XSS vulnerability. You can find more details on…
Read the Post

Out-of-date Software Affects Websites Big and Small

  • Daniel Cid
  • November 5, 2012
Last week we published an article listing some big and popular websites that were leaking information about their users via the Apache server-status page. We…
Read the Post
WordPress.com Spam
  • Vulnerability Disclosure
  • Website Security
  • WordPress Security

Is WordPress.com SPAM Campaign Due to Compromise?

  • Tony Perez
  • October 16, 2012
*****Updated – 20121019***** Both Matt Mullenweg and Barry Abrahamson, System Wrangler with Automattic, have confirmed that there was not an environmental compromise and everything was…
Read the Post

Joomla 2.5.7 Released (Security Update)

  • David Dede
  • September 13, 2012
Joomla 2.5.7 was just released today fixing 2 low severity security bugs and added a few other improvements. As always, we recommend all our Joomla…
Read the Post
Java Exploits
  • Vulnerability Disclosure
  • Web Pros
  • Website Malware Infections

Compromised Websites Hosting Calls to Java Exploit

  • Daniel Cid
  • September 12, 2012
Remember that Java 0 day vulnerability that was discovered a few weeks ago and took a while to get patched by Oracle? You know, the…
Read the Post

Sociable WordPress Plugin Security Warning

  • Daniel Cid
  • September 7, 2012
If you are using the Sociable WordPress Plugin (plugin with 1,777,161 downloads), be very careful when visiting the plugin’s page settings. We recommend that you…
Read the Post
Search
Sucuri Sidebar Malware Removal to Signup Page
Sucuri Logo

Let’s Connect

Products
Website Firewall Website Security Platform WordPress Security Website Backups Hack Assistance Pricing
Solutions
DDoS Protection Malware Detection Malware Removal Malware Prevention Blacklist Removal SEO Spam Removal
USE CASES
Developers Ecommerce Agency Plans Enterprise Services HTTPS/2 Virtual Patching
Support
Knowledge Base SiteCheck Guides Research Labs Report Abuse Status Report
Company
About Sucuri Contact Blog Referral Partners Testimonials
Terms of Use Privacy Policy Do Not Sell My Personal Information Frequently Asked Questions

© 2025 GoDaddy Mediatemple, Inc., d/b/a Sucuri. All rights reserved.

back to top

'