Sucuri Blog
  • Products
    • Website Security Platform
    • Website Firewall (WAF)
    • Multi-Site plans
    • Custom & Enterprise Plans
    • Partnerships
  • Features
    • Detection
      Website Monitoring & Alerts
    • Protection
      Future Website Hacks
    • Performance
      Speed Up Your Website
    • Response
      Help For Hacked Websites
    • Backups
      Disaster Recovery Plan
  • Resources
    • Guides
    • Webinars
    • Infographics
    • Blog
    • SiteCheck
    • Reports
    • Email Courses
  • Pricing
  • Immediate Help
  • Login
Sucuri Blog
  • Products
    • Website Security Platform
    • Website Firewall (WAF)
    • Multi-Site plans
    • Custom & Enterprise Plans
    • Partnerships
  • Features
    • Detection
      Website Monitoring & Alerts
    • Protection
      Future Website Hacks
    • Performance
      Speed Up Your Website
    • Response
      Help For Hacked Websites
    • Backups
      Disaster Recovery Plan
  • Resources
    • Guides
    • Webinars
    • Infographics
    • Blog
    • SiteCheck
    • Reports
    • Email Courses
  • Pricing
  • Immediate Help
  • Login
  • Immediate Help
Login
Login

New Customer?

Sign up now.
  • Submit a ticket
  • Knowledge base
  • Chat now

Browsing Category

WordPress Security

672 posts
WordPress Redirect Hack via Test0.com/Default7.com
  • Sucuri Labs
  • Website Malware Infections
  • Website Security
  • WordPress Security

R_Evil WordPress Hacktool & Malicious JavaScript Injections

  • Luke Leal
  • October 22, 2020
We often see hackers reusing the same malware, with only a few new adjustments to obfuscate the code so that it is more difficult for…
Read the Post
Labs Note
  • Drupal Security
  • Joomla Security
  • Magento Security
  • Sucuri Labs
  • Website Malware Infections
  • Website Security
  • WordPress Security

Backdoor Shell Dropper Deploys CMS-Specific Malware

  • Krasimir Konov
  • October 6, 2020
A large majority of the malware we find on compromised websites are backdoors that allow an attacker to maintain unauthorized access to the site and…
Read the Post
WordPress Redirect Hack via Test0.com/Default7.com
  • Sucuri Labs
  • Website Malware Infections
  • Website Security
  • WordPress Security

WordPress Malware Disables Security Plugins to Avoid Detection

  • Luke Leal
  • September 10, 2020
An alarm or monitoring system is a great tool that can be used to improve the security of a home or website, but what if…
Read the Post
Backdoors in Malicious Plugins
  • Sucuri Labs
  • Website Security
  • WordPress Security

Reflected XSS in WordPress Plugin Admin Pages

  • Antony Garand
  • September 8, 2020
The administrative dashboard in WordPress is a pretty safe place: Only elevated users can access it. Exploiting a plugin’s admin panel would serve very little…
Read the Post
WordPress Vulnerability
  • Vulnerability Disclosure
  • WordPress Security

Critical Vulnerability in File Manager Plugin Affecting 700k WordPress Websites

  • Antony Garand
  • September 2, 2020
Yesterday, the WordPress plugin File Manager was updated, fixing a critical vulnerability allowing any website visitor to gain complete access to the website. Users of…
Read the Post
Labs Note
  • Ecommerce Security
  • Joomla Security
  • Website Malware Infections
  • Website Security
  • WordPress Security

Vulnerabilities Digest: July 2020

  • John Castro
  • August 3, 2020
Relevant Plugins and Vulnerabilities: Plugin Vulnerability Patched Version Installs Asset CleanUp: Page Speed Authenticated XSS 1.4.6.7 80000 Quiz And Survey Master Authenticated Stored XSS 7.0.0…
Read the Post
Reverse String WooCommerce
  • Ecommerce Security
  • Sucuri Labs
  • Website Malware Infections
  • Website Security
  • WordPress Security

Reverse String WooCommerce WordPress Credit Card Swiper

  • Ben Martin
  • July 27, 2020
As 2020 continues to be the worst year in almost anybody’s lifetime, allow me to take this opportunity to stoke the fires of your existential…
Read the Post
Fake WordPress Plugin SiteSpeed Hosts Malicious Ads & Backdoors
  • Sucuri Labs
  • Website Security
  • WordPress Security

Fake WordPress Plugin SiteSpeed Serves Malicious Ads & Backdoors

  • Krasimir Konov
  • July 16, 2020
Fake WordPress plugins appear to be trending as an effective way of establishing a foothold on compromised websites. During a recent investigation, we discovered a…
Read the Post
Pirated WordPress & Magento Plugins
  • Ecommerce Security
  • Magento Security
  • Website Malware Infections
  • Website Security
  • WordPress Security

Pirated WordPress Plugins Bundled with Backdoors

  • Luke Leal
  • July 8, 2020
One widespread belief among webmasters is that attackers typically only compromise websites in a couple of ways: by exploiting vulnerabilities or stealing login credentials. Although…
Read the Post
PinnacleCart Server-Side Skimmer & Backdoor
  • Ecommerce Security
  • Website Malware Infections
  • WordPress Security

WordPress Malware Collects Sensitive WooCommerce Data

  • Luke Leal
  • May 15, 2020
During a recent investigation, our team found malicious code that reveals how attackers are performing reconnaissance to identify if sites are actively using WooCommerce in…
Read the Post
Labs Note
  • Sucuri Labs
  • Vulnerability Disclosure
  • WordPress Security

Unauthenticated Stored Cross Site Scripting in WP Product Review

  • John Castro
  • May 14, 2020
During a routine research audit for our Sucuri Firewall, we discovered an Unauthenticated Persistent Cross-Site Scripting (XSS) affecting 40,000+ users of the WP Product Review…
Read the Post
Search
Cross-Site Scripting Guide Sidebar
Sucuri Sidebar Malware Removal to Signup Page
Sucuri Logo

Let’s Connect

Products
Website Firewall Website Security Platform WordPress Security Website Backups Hack Assistance Pricing
Solutions
DDoS Protection Malware Detection Malware Removal Malware Prevention Blacklist Removal SEO Spam Removal
USE CASES
Developers Ecommerce Agency Plans Enterprise Services HTTPS/2 Virtual Patching
Support
Knowledge Base SiteCheck Guides Research Labs Report Abuse Status Report
Company
About Sucuri Contact Blog Referral Partners Testimonials
Terms of Use Privacy Policy Do Not Sell My Personal Information Frequently Asked Questions

© 2025 GoDaddy Mediatemple, Inc., d/b/a Sucuri. All rights reserved.

back to top

'