Sucuri Blog
  • Products
    • Website Security Platform
    • Website Firewall (WAF)
    • Multi-Site plans
    • Custom & Enterprise Plans
    • Partnerships
  • Features
    • Detection
      Website Monitoring & Alerts
    • Protection
      Future Website Hacks
    • Performance
      Speed Up Your Website
    • Response
      Help For Hacked Websites
    • Backups
      Disaster Recovery Plan
  • Resources
    • Guides
    • Webinars
    • Infographics
    • Blog
    • SiteCheck
    • Reports
    • Email Courses
  • Pricing
  • Immediate Help
  • Login
Sucuri Blog
  • Products
    • Website Security Platform
    • Website Firewall (WAF)
    • Multi-Site plans
    • Custom & Enterprise Plans
    • Partnerships
  • Features
    • Detection
      Website Monitoring & Alerts
    • Protection
      Future Website Hacks
    • Performance
      Speed Up Your Website
    • Response
      Help For Hacked Websites
    • Backups
      Disaster Recovery Plan
  • Resources
    • Guides
    • Webinars
    • Infographics
    • Blog
    • SiteCheck
    • Reports
    • Email Courses
  • Pricing
  • Immediate Help
  • Login
  • Immediate Help
Login
Login

New Customer?

Sign up now.
  • Submit a ticket
  • Knowledge base
  • Chat now

Browsing Category

Website Security

1021 posts
Uncommon Radixes Obfuscation
  • Sucuri Labs
  • Website Malware Infections
  • Website Security
  • WordPress Security

Code Comments Reveal SCP 173 Malware

  • Luke Leal
  • November 9, 2020
We sometimes find malware code injections that contain strange code comments, which are normally used by programmers to annotate a section of code — for…
Read the Post
Return to the City of Cron - Malware Infections on Joomla and WordPress
  • Security Education
  • Sucuri Labs
  • Website Malware Infections
  • Website Security

ALFA TEaM Shell ~ v4.1-Tesla: A Feature Update Analysis

  • Luke Leal
  • November 5, 2020
We’ve seen a wider variety of PHP web shells being used by attackers this year —  including a number of shells that have been significantly…
Read the Post
Labs Note
  • Security Education
  • Sucuri Labs
  • Website Malware Infections
  • Website Security

Legacy Mauthtoken Malware Continues to Redirect Mobile Users

  • Krasimir Konov
  • November 4, 2020
During malware analysis, we regularly find variations of this injected script on various compromised websites: . The variable “_0x446d” assigns hex encoded strings in different…
Read the Post
Stylish Magento Card Stealer loads Without Script Tags
  • Security Education
  • Sucuri Labs
  • Website Malware Infections
  • Website Security

CSS-JS Steganography in Fake Flash Player Update Malware

  • Denis Sinegubko
  • November 2, 2020
This summer, MalwareBytes researcher Jérôme Segura wrote an article about how criminals use image files (.ico) to hide JavaScript credit card stealers on compromised e-commerce…
Read the Post
WordPress Vulnerability Detail
  • Sucuri Labs
  • Vulnerability Disclosure
  • Website Security
  • WordPress Security

Reflected XSS in WordPress v5.5.1 and Lower

  • Marc-Alexandre Montpas
  • October 30, 2020
WordPress released version 5.5.2 yesterday, which fixed a reflected XSS vulnerability we reported earlier this year. The root cause of this issue is a bug…
Read the Post
PHP repository exploited by hackers
  • Security Education
  • Sucuri Labs
  • Website Malware Infections
  • Website Security

P.A.S. Fork v. 1.0 — A Web Shell Revival

  • Luke Leal
  • October 26, 2020
A PHP web shell containing multiple functions can easily consist of thousands of lines of code, so it’s no surprise that attackers often reuse the…
Read the Post
How do websites get hacked
  • Security Education
  • Website Security

Password Security & Password Managers

  • Art Martori
  • October 23, 2020
In the spirit of National Cyber Security Awareness Month (NCSAM), let’s talk about a security basic that many people overlook: passwords. These are one of…
Read the Post
WordPress Redirect Hack via Test0.com/Default7.com
  • Sucuri Labs
  • Website Malware Infections
  • Website Security
  • WordPress Security

R_Evil WordPress Hacktool & Malicious JavaScript Injections

  • Luke Leal
  • October 22, 2020
We often see hackers reusing the same malware, with only a few new adjustments to obfuscate the code so that it is more difficult for…
Read the Post
Server Side Data Exfiltration via Telegram API
  • Website Security

A Quick Glance at Cross-Origin Resource Sharing Security Headers

  • Northon Torga
  • October 21, 2020
Thanks to the rapid growth of JavaScript frameworks such as Angular, Vue, and React, CORS has become a popular word in the developer’s vocabulary. When…
Read the Post
Ecommerce Security Tips
  • Ecommerce Security
  • Magento Security
  • Security Education
  • Website Security

Securing Your Online Store for the Holidays

  • Victor Santoyo
  • October 16, 2020
Shopping season is here, and so is the opportunity for ecommerce site owners to grow their business and generate revenue. In lieu of the changing…
Read the Post
Labs Note
  • Ecommerce Security
  • Magento Security
  • Website Security

Magento Phishing Leverages JavaScript For Exfiltration

  • Luke Leal
  • October 14, 2020
During a recent investigation, a Magento admin login phishing page was found on a compromised website using the file name wp-order.php. This is an odd…
Read the Post
Search
Sucuri Sidebar Malware Removal to Signup Page
Sucuri Logo

Let’s Connect

Products
Website Firewall Website Security Platform WordPress Security Website Backups Hack Assistance Pricing
Solutions
DDoS Protection Malware Detection Malware Removal Malware Prevention Blacklist Removal SEO Spam Removal
USE CASES
Developers Ecommerce Agency Plans Enterprise Services HTTPS/2 Virtual Patching
Support
Knowledge Base SiteCheck Guides Research Labs Report Abuse Status Report
Company
About Sucuri Contact Blog Referral Partners Testimonials
Terms of Use Privacy Policy Do Not Sell My Personal Information Frequently Asked Questions

© 2025 GoDaddy Mediatemple, Inc., d/b/a Sucuri. All rights reserved.

back to top

'