Sucuri Blog
  • Products
    • Website Security Platform
    • Website Firewall (WAF)
    • Multi-Site plans
    • Custom & Enterprise Plans
    • Partnerships
  • Features
    • Detection
      Website Monitoring & Alerts
    • Protection
      Future Website Hacks
    • Performance
      Speed Up Your Website
    • Response
      Help For Hacked Websites
    • Backups
      Disaster Recovery Plan
  • Resources
    • Guides
    • Webinars
    • Infographics
    • Blog
    • SiteCheck
    • Reports
    • Email Courses
  • Pricing
  • Immediate Help
  • Login
Sucuri Blog
  • Products
    • Website Security Platform
    • Website Firewall (WAF)
    • Multi-Site plans
    • Custom & Enterprise Plans
    • Partnerships
  • Features
    • Detection
      Website Monitoring & Alerts
    • Protection
      Future Website Hacks
    • Performance
      Speed Up Your Website
    • Response
      Help For Hacked Websites
    • Backups
      Disaster Recovery Plan
  • Resources
    • Guides
    • Webinars
    • Infographics
    • Blog
    • SiteCheck
    • Reports
    • Email Courses
  • Pricing
  • Immediate Help
  • Login
  • Immediate Help
Login
Login

New Customer?

Sign up now.
  • Submit a ticket
  • Knowledge base
  • Chat now

Browsing Category

Vulnerability Disclosure

254 posts

TimThumb.php Vulnerability Not Only Affecting Themes – Plugins too

  • David Dede
  • August 16, 2011
The Timthumb.php vulnerability is being used in the wild to hack and infect thousands of WordPress sites. Hopefully everyone is checking their themes and updating…
Read the Post

Non-Stop Attacks Against osCommerce – Time to Take Action

  • David Dede
  • August 16, 2011
The malware attacks against osCommerce sites are still going at full force and the site owners have to take action to secure and update their…
Read the Post

Update to the Superpuperdomain2.com malware

  • David Dede
  • August 15, 2011
Just a quick update to the Superpuperdomain2.com/Superpuperdomain.com malware infection that has been affecting thousands of WordPress sites with the vulnerable timthumb.php script. You can read…
Read the Post

WordPress Sites Hacked with Superpuperdomain2.com

  • David Dede
  • August 13, 2011
A few days ago we posted about a series of attacks that were happening against WordPress sites running the vulnerable timthumb.php script. We detected thousands…
Read the Post

Timthumb Security Vulnerability – List of Themes

  • David Dede
  • August 3, 2011
The Timthumb 0-day security vulnerability is generating a lot of noise and for good reason. If you have a theme that includes TimThumb, your site…
Read the Post

Timthumb.php Security Vulnerability – Just the Tip of the Iceberg

  • David Dede
  • August 2, 2011
There has been some buzz about a zero day vulnerability found in Timthumb.php that can allow for arbitrary file uploads. Although this is a platform…
Read the Post

Keeping Your WordPress Themes Updated

  • Dre Armeda
  • August 2, 2011
We talk a lot about keeping WordPress and the plugins you use updated. That’s great and all, but you also have to remember that it…
Read the Post

WP-phpmyadmin WordPress plugin – Delete it now

  • David Dede
  • June 22, 2011
If you are using the WP-phpmyadmin WordPress plugin, delete it now. We are seeing multiple sites getting hacked through it and we are investigating what…
Read the Post

WordPress plugins hacked – Understanding the backdoor

  • David Dede
  • June 22, 2011
If you haven’t heard about it already, yesterday three popular WordPress plugins (AddThis, WPtouch, and W3 Total Cache) had a malicious backdoor added to them…
Read the Post

Information Leakage on multiple WordPress themes by WooThemes

  • David Dede
  • June 6, 2011
This weekend there was a post on the Full disclosure list about multiple vulnerabilities on some WordPress themes by WooThemes. This is what the message…
Read the Post

VBulleting SQL injection vulnerability – Update now

  • David Dede
  • May 30, 2011
A serious SQL injection vulnerability was reported on Vbulletin (4.0.x, 4.1.0, 4.1.1 and 4.1.2) last month and we are starting to see it being used…
Read the Post
Search
What is SQL injection and how to prevent attacks sidebar
Sucuri Sidebar Malware Removal to Signup Page
Sucuri Logo

Let’s Connect

Products
Website Firewall Website Security Platform WordPress Security Website Backups Hack Assistance Pricing
Solutions
DDoS Protection Malware Detection Malware Removal Malware Prevention Blacklist Removal SEO Spam Removal
USE CASES
Developers Ecommerce Agency Plans Enterprise Services HTTPS/2 Virtual Patching
Support
Knowledge Base SiteCheck Guides Research Labs Report Abuse Status Report
Company
About Sucuri Contact Blog Referral Partners Testimonials
Terms of Use Privacy Policy Do Not Sell My Personal Information Frequently Asked Questions

© 2025 GoDaddy Mediatemple, Inc., d/b/a Sucuri. All rights reserved.

back to top

'