Sucuri Blog
  • Products
    • Website Security Platform
    • Website Firewall (WAF)
    • Multi-Site plans
    • Custom & Enterprise Plans
    • Partnerships
  • Features
    • Detection
      Website Monitoring & Alerts
    • Protection
      Future Website Hacks
    • Performance
      Speed Up Your Website
    • Response
      Help For Hacked Websites
    • Backups
      Disaster Recovery Plan
  • Resources
    • Guides
    • Webinars
    • Infographics
    • Blog
    • SiteCheck
    • Reports
    • Email Courses
  • Pricing
  • Immediate Help
  • Login
Sucuri Blog
  • Products
    • Website Security Platform
    • Website Firewall (WAF)
    • Multi-Site plans
    • Custom & Enterprise Plans
    • Partnerships
  • Features
    • Detection
      Website Monitoring & Alerts
    • Protection
      Future Website Hacks
    • Performance
      Speed Up Your Website
    • Response
      Help For Hacked Websites
    • Backups
      Disaster Recovery Plan
  • Resources
    • Guides
    • Webinars
    • Infographics
    • Blog
    • SiteCheck
    • Reports
    • Email Courses
  • Pricing
  • Immediate Help
  • Login
  • Immediate Help
Login
Login

New Customer?

Sign up now.
  • Submit a ticket
  • Knowledge base
  • Chat now

Browsing Category

WordPress Security

666 posts
Labs Note
  • Ecommerce Security
  • Sucuri Labs
  • Website Malware Infections
  • Website Security
  • WordPress Security

Fake WordPress Functions Conceal assert() Backdoor

  • Douglas Santos
  • December 8, 2020
A few weeks ago, I was manually inspecting some files on a compromised website. While checking on a specific WooCommerce file, I noticed something interesting.…
Read the Post
Labs Note
  • Sucuri Labs
  • Website Security
  • WordPress Security

Hackers Love Expired Domains

  • Luke Leal
  • November 26, 2020
Sometimes, website owners no longer want to own a domain name and they allow it to expire without attempting to renew it. This happens all…
Read the Post
Labs Note
  • Sucuri Labs
  • Website Security
  • WordPress Security

Hidden SEO Spam Link Injections on WordPress Sites

  • Luke Leal
  • November 23, 2020
Often when a website is injected with SEO spam, the owner is completely unaware of the issue until they begin to receive warnings from search…
Read the Post
Uncommon Radixes Obfuscation
  • Sucuri Labs
  • Website Malware Infections
  • Website Security
  • WordPress Security

Code Comments Reveal SCP 173 Malware

  • Luke Leal
  • November 9, 2020
We sometimes find malware code injections that contain strange code comments, which are normally used by programmers to annotate a section of code — for…
Read the Post
WordPress Vulnerability Detail
  • Sucuri Labs
  • Vulnerability Disclosure
  • Website Security
  • WordPress Security

Reflected XSS in WordPress v5.5.1 and Lower

  • Marc-Alexandre Montpas
  • October 30, 2020
WordPress released version 5.5.2 yesterday, which fixed a reflected XSS vulnerability we reported earlier this year. The root cause of this issue is a bug…
Read the Post
WordPress Redirect Hack via Test0.com/Default7.com
  • Sucuri Labs
  • Website Malware Infections
  • Website Security
  • WordPress Security

R_Evil WordPress Hacktool & Malicious JavaScript Injections

  • Luke Leal
  • October 22, 2020
We often see hackers reusing the same malware, with only a few new adjustments to obfuscate the code so that it is more difficult for…
Read the Post
Labs Note
  • Drupal Security
  • Joomla Security
  • Magento Security
  • Sucuri Labs
  • Website Malware Infections
  • Website Security
  • WordPress Security

Backdoor Shell Dropper Deploys CMS-Specific Malware

  • Krasimir Konov
  • October 6, 2020
A large majority of the malware we find on compromised websites are backdoors that allow an attacker to maintain unauthorized access to the site and…
Read the Post
WordPress Redirect Hack via Test0.com/Default7.com
  • Sucuri Labs
  • Website Malware Infections
  • Website Security
  • WordPress Security

WordPress Malware Disables Security Plugins to Avoid Detection

  • Luke Leal
  • September 10, 2020
An alarm or monitoring system is a great tool that can be used to improve the security of a home or website, but what if…
Read the Post
Backdoors in Malicious Plugins
  • Sucuri Labs
  • Website Security
  • WordPress Security

Reflected XSS in WordPress Plugin Admin Pages

  • Antony Garand
  • September 8, 2020
The administrative dashboard in WordPress is a pretty safe place: Only elevated users can access it. Exploiting a plugin’s admin panel would serve very little…
Read the Post
WordPress Vulnerability
  • Vulnerability Disclosure
  • WordPress Security

Critical Vulnerability in File Manager Plugin Affecting 700k WordPress Websites

  • Antony Garand
  • September 2, 2020
Yesterday, the WordPress plugin File Manager was updated, fixing a critical vulnerability allowing any website visitor to gain complete access to the website. Users of…
Read the Post
Labs Note
  • Ecommerce Security
  • Joomla Security
  • Website Malware Infections
  • Website Security
  • WordPress Security

Vulnerabilities Digest: July 2020

  • John Castro
  • August 3, 2020
Relevant Plugins and Vulnerabilities: Plugin Vulnerability Patched Version Installs Asset CleanUp: Page Speed Authenticated XSS 1.4.6.7 80000 Quiz And Survey Master Authenticated Stored XSS 7.0.0…
Read the Post
Search
Sucuri Sidebar Malware Removal to Signup Page
Sucuri Logo

Let’s Connect

Products
Website Firewall Website Security Platform WordPress Security Website Backups Hack Assistance Pricing
Solutions
DDoS Protection Malware Detection Malware Removal Malware Prevention Blacklist Removal SEO Spam Removal
USE CASES
Developers Ecommerce Agency Plans Enterprise Services HTTPS/2 Virtual Patching
Support
Knowledge Base SiteCheck Guides Research Labs Report Abuse Status Report
Company
About Sucuri Contact Blog Referral Partners Testimonials
Terms of Use Privacy Policy Do Not Sell My Personal Information Frequently Asked Questions

© 2025 GoDaddy Mediatemple, Inc., d/b/a Sucuri. All rights reserved.

back to top

'