Sucuri Blog
  • Products
    • Website Security Platform
    • Website Firewall (WAF)
    • Multi-Site plans
    • Custom & Enterprise Plans
    • Partnerships
  • Features
    • Detection
      Website Monitoring & Alerts
    • Protection
      Future Website Hacks
    • Performance
      Speed Up Your Website
    • Response
      Help For Hacked Websites
    • Backups
      Disaster Recovery Plan
  • Resources
    • Guides
    • Webinars
    • Infographics
    • Blog
    • SiteCheck
    • Reports
    • Email Courses
  • Pricing
  • Immediate Help
  • Login
Sucuri Blog
  • Products
    • Website Security Platform
    • Website Firewall (WAF)
    • Multi-Site plans
    • Custom & Enterprise Plans
    • Partnerships
  • Features
    • Detection
      Website Monitoring & Alerts
    • Protection
      Future Website Hacks
    • Performance
      Speed Up Your Website
    • Response
      Help For Hacked Websites
    • Backups
      Disaster Recovery Plan
  • Resources
    • Guides
    • Webinars
    • Infographics
    • Blog
    • SiteCheck
    • Reports
    • Email Courses
  • Pricing
  • Immediate Help
  • Login
  • Immediate Help
Login
Login

New Customer?

Sign up now.
  • Submit a ticket
  • Knowledge base
  • Chat now

Browsing Category

WordPress Security

666 posts
  • Security Advisory
  • Website Security
  • WordPress Security

WordPress 5.8.3 Security Release

  • Ben Martin
  • January 7, 2022
On January 6th, an important security update was released for the WordPress core addresses four separate vulnerabilities. WordPress website administrators are advised to update their…
Read the Post
  • Vulnerability Disclosure
  • Website Security
  • WordPress Security

Critical Vulnerabilities in All in One SEO Plugin Affects Millions of WordPress Websites

  • Ben Martin
  • December 21, 2021
Security Risk: High Exploitation Level: Easy CVSS Score: 9.9 / 7.7 Vulnerability: Privilege Escalation, SQL Injection Patched Version: 4.1.5.3 Last week, security researcher at Automattic…
Read the Post
  • Ecommerce Security
  • Website Malware Infections
  • WordPress Security

WooCommerce Credit Card Swiper Injected Into Random Plugin Files

  • Ben Martin
  • December 6, 2021
It’s that time of year again! While website owners always need to be on guard, the holidays season is when online scams and credit card…
Read the Post
  • Website Security
  • WordPress Security

WordPress Admin Creator – A Simple, But Effective Attack

  • Kayleigh Martin
  • December 1, 2021
Malicious admin users get added to vulnerable WordPress sites often. This can happen in a variety of different ways, and sometimes the malware that creates…
Read the Post
Online Credit Card Theft - A Brief Overview of Online Fraud and Abuse
  • Website Malware Infections
  • Website Security
  • WordPress Security

WooCommerce Skimmer Spoofs Checkout Page

  • Ben Martin
  • November 8, 2021
Recently a client of ours was reporting a bogus checkout page appearing on their website. When trying to access their “my-account” page an unfamiliar prompt…
Read the Post
WordPress Redirect Hack via Test0.com/Default7.com
  • Website Security
  • WordPress Security

Multistage WordPress Redirect Kit

  • Ben Martin
  • September 8, 2021
Recently, one of our analysts @kpetku came across a series of semi-randomised malware injections in multiple WordPress environments. Typical of spam redirect infections, the malware…
Read the Post
Server Side Data Exfiltration via Telegram API
  • Website Malware Infections
  • Website Security
  • WordPress Security

Vulnerable Plugin Exploited in Spam Redirect Campaign

  • Ben Martin
  • July 21, 2021
Some weeks ago a critical unauthenticated privilege escalation vulnerability was discovered in old, unpatched versions of the wp-user-avatar plugin. It also allows for arbitrary file…
Read the Post
A Review of Basic WordPress Hardening
  • Security Education
  • Website Security
  • WordPress Security

An Overview of Basic WordPress Hardening

  • Ben Martin
  • July 14, 2021
We have discussed in the past how out-of-the-box security configurations tend to not be very secure. This is usually true for all software and WordPress…
Read the Post
Online Credit Card Theft - A Brief Overview of Online Fraud and Abuse
  • Ecommerce Security
  • Website Security
  • WordPress Security

Online Credit Card Theft – A Brief Overview of Online Fraud and Abuse – Part 1

  • Ben Martin
  • June 23, 2021
Many clients that we work with host and operate ecommerce websites which are frequent targets of attackers. The goal of these attacks is to steal…
Read the Post
Person in sweatshirt with hood
  • Security Education
  • Website Malware Infections
  • WordPress Security

Malicious Redirects Through Bogus Plugin

  • Ben Martin
  • June 17, 2021
Recently we have been seeing a rash of WordPress website compromises with attackers abusing the plugin upload functionality in the wp-admin dashboard to redirect visitors…
Read the Post
WordPress Redirect Hack via Test0.com/Default7.com
  • Website Malware Infections
  • Website Security
  • WordPress Security

WordPress Redirect Hack via Test0.com/Default7.com

  • Denis Sinegubko
  • June 4, 2021
Malicious redirect is a type of hack where website visitors are automatically redirected to some third-party website: usually it’s some malicious resource, scam site or…
Read the Post
Search
Sucuri Sidebar Malware Removal to Signup Page
Sucuri Logo

Let’s Connect

Products
Website Firewall Website Security Platform WordPress Security Website Backups Hack Assistance Pricing
Solutions
DDoS Protection Malware Detection Malware Removal Malware Prevention Blacklist Removal SEO Spam Removal
USE CASES
Developers Ecommerce Agency Plans Enterprise Services HTTPS/2 Virtual Patching
Support
Knowledge Base SiteCheck Guides Research Labs Report Abuse Status Report
Company
About Sucuri Contact Blog Referral Partners Testimonials
Terms of Use Privacy Policy Do Not Sell My Personal Information Frequently Asked Questions

© 2025 GoDaddy Mediatemple, Inc., d/b/a Sucuri. All rights reserved.

back to top

'