Sucuri Blog
  • Products
    • Website Security Platform
    • Website Firewall (WAF)
    • Multi-Site plans
    • Custom & Enterprise Plans
    • Partnerships
  • Features
    • Detection
      Website Monitoring & Alerts
    • Protection
      Future Website Hacks
    • Performance
      Speed Up Your Website
    • Response
      Help For Hacked Websites
    • Backups
      Disaster Recovery Plan
  • Resources
    • Guides
    • Webinars
    • Infographics
    • Blog
    • SiteCheck
    • Reports
    • Email Courses
  • Pricing
  • Immediate Help
  • Login
Sucuri Blog
  • Products
    • Website Security Platform
    • Website Firewall (WAF)
    • Multi-Site plans
    • Custom & Enterprise Plans
    • Partnerships
  • Features
    • Detection
      Website Monitoring & Alerts
    • Protection
      Future Website Hacks
    • Performance
      Speed Up Your Website
    • Response
      Help For Hacked Websites
    • Backups
      Disaster Recovery Plan
  • Resources
    • Guides
    • Webinars
    • Infographics
    • Blog
    • SiteCheck
    • Reports
    • Email Courses
  • Pricing
  • Immediate Help
  • Login
  • Immediate Help
Login
Login

New Customer?

Sign up now.
  • Submit a ticket
  • Knowledge base
  • Chat now

Browsing Category

WordPress Security

669 posts
Down the Malware Rabbit Hole Part 2
  • Ecommerce Security
  • Website Security
  • WordPress Security

Malicious JavaScript Used in WP Site/Home URL Redirects

  • Luke Leal
  • January 21, 2020
Our team recently found a malicious JavaScript injection within the WordPress index.php theme file on a compromised WordPress website which ultimately redirects site visitors to…
Read the Post
WordPress Vulnerability Detail
  • Security Advisory
  • Vulnerability Disclosure
  • Website Security
  • WordPress Security

Authentication Bypass Vulnerability in InfiniteWP Client <= 1.9.4.4 

  • Marc-Alexandre Montpas
  • January 16, 2020
An authentication bypass vulnerability affecting more than 300,000 InfiniteWP Client plugin users has recently been disclosed to the public. This plugin allows site owners to…
Read the Post
Labs Note
  • Website Malware Infections
  • WordPress Security

WordPress Mass Password Changer

  • Luke Leal
  • January 14, 2020
Our team recently came across a password changer for WordPress that allows attackers to modify WordPress user passwords within a compromised environment. By default, the…
Read the Post
Sucuri Research 2019 Roundup
  • Magento Security
  • Security Education
  • Website Malware Infections
  • Website Security
  • WordPress Security

Top 10 Sucuri Research Articles in 2019

  • Justin Channell
  • January 14, 2020
As we settle into 2020, it’s a good time to look back at what was learned in the previous year. After all, the past provides…
Read the Post
Soak Soak Throwback Threat Thursday
  • Website Malware Infections
  • Website Security
  • WordPress Security

5 Year Anniversary of the SoakSoak Malware Tsunami

  • Denis Sinegubko
  • December 19, 2019
This is a story about the SoakSoak malware campaign that proved that you can’t underestimate impact of security issues in popular premium software. These days,…
Read the Post
Unmasking Black Hat SEO
  • Website Security
  • WordPress Security

Unmasking Black Hat SEO for Dating Scams

  • Denis Sinegubko
  • December 12, 2019
Malware obfuscation comes in all shapes and sizes — and it’s sometimes hard to recognize the difference between malicious and legitimate code when you see…
Read the Post
Labs Note
  • Sucuri Labs
  • Website Malware Infections
  • WordPress Security

Plugins added to Malware Campaign: November 2019

  • John Castro
  • December 2, 2019
This is an update for the long-lasting malware campaign targeting vulnerable plugins since January. Please check our previous updates below: Multi-Vector Attack in Server Logs:…
Read the Post
  • Security Education
  • Website Security
  • WordPress Security

Another Fake Google Domain: fonts.googlesapi.com

  • Luke Leal
  • December 2, 2019
Our Remediation team lead Ben Martin recently found a fake Google domain that is pretty convincing to the naked eye. The malicious domain was abusing…
Read the Post
Labs Note
  • Sucuri Labs
  • Website Malware Infections
  • WordPress Security

Wrong content-type to XSS

  • John Castro
  • November 22, 2019
WordPress Social Sharing Plugin – Sassy Social Share, which currently has over 100000 installations just fixed a Cross Site Scripting Vulnerability. This bug allows attackers…
Read the Post
Vulnerable Versions of Adminer as a Universal Infection Vector
  • Magento Security
  • Sucuri
  • Website Malware Infections
  • Website Security
  • WordPress Security

Vulnerable Versions of Adminer as a Universal Infection Vector

  • Denis Sinegubko
  • November 9, 2019
This past week, we’ve been monitoring a new wave of website infections mostly impacting WordPress and Magento websites. We found that hackers have been injecting…
Read the Post
  • Ecommerce Security
  • Magento Security
  • WordPress Security

Skimmers for Both Magento and WordPress

  • Denis Sinegubko
  • November 7, 2019
We often write about malware that steal payment information from sites built with Magento and other types of e-commerce CMS. When discussing credit card skimmers…
Read the Post
Search
Sucuri Sidebar Malware Removal to Signup Page
Sucuri Logo

Let’s Connect

Products
Website Firewall Website Security Platform WordPress Security Website Backups Hack Assistance Pricing
Solutions
DDoS Protection Malware Detection Malware Removal Malware Prevention Blacklist Removal SEO Spam Removal
USE CASES
Developers Ecommerce Agency Plans Enterprise Services HTTPS/2 Virtual Patching
Support
Knowledge Base SiteCheck Guides Research Labs Report Abuse Status Report
Company
About Sucuri Contact Blog Referral Partners Testimonials
Terms of Use Privacy Policy Do Not Sell My Personal Information Frequently Asked Questions

© 2025 GoDaddy Mediatemple, Inc., d/b/a Sucuri. All rights reserved.

back to top

'