Sucuri Blog
  • Products
    • Website Security Platform
    • Website Firewall (WAF)
    • Multi-Site plans
    • Custom & Enterprise Plans
    • Partnerships
  • Features
    • Detection
      Website Monitoring & Alerts
    • Protection
      Future Website Hacks
    • Performance
      Speed Up Your Website
    • Response
      Help For Hacked Websites
    • Backups
      Disaster Recovery Plan
  • Resources
    • Guides
    • Webinars
    • Infographics
    • Blog
    • SiteCheck
    • Reports
    • Email Courses
  • Pricing
  • Immediate Help
  • Login
Sucuri Blog
  • Products
    • Website Security Platform
    • Website Firewall (WAF)
    • Multi-Site plans
    • Custom & Enterprise Plans
    • Partnerships
  • Features
    • Detection
      Website Monitoring & Alerts
    • Protection
      Future Website Hacks
    • Performance
      Speed Up Your Website
    • Response
      Help For Hacked Websites
    • Backups
      Disaster Recovery Plan
  • Resources
    • Guides
    • Webinars
    • Infographics
    • Blog
    • SiteCheck
    • Reports
    • Email Courses
  • Pricing
  • Immediate Help
  • Login
  • Immediate Help
Login
Login

New Customer?

Sign up now.
  • Submit a ticket
  • Knowledge base
  • Chat now

Browsing Category

WordPress Security

672 posts
Labs Note
  • Sucuri Labs
  • Website Malware Infections
  • WordPress Security

Backdoor plugin hides from view

  • Luke Leal
  • July 24, 2019
One of the most important traits for backdoors is the ability to remain undetected by most users — otherwise it may draw suspicion and be…
Read the Post
Labs Note
  • Sucuri Labs
  • Website Malware Infections
  • WordPress Security

WPTF Hybrid Composer – Unauthenticated Arbitrary Options Update

  • John Castro
  • July 11, 2019
With almost 300 installs, WPTF – Hybrid Composer is a framework that helps users easily create custom themes for WordPress. We recently noticed an increase…
Read the Post
WordPress Vulnerability Detail
  • Vulnerability Disclosure
  • WordPress Security

Icegram Persistent Cross-Site Scripting

  • John Castro
  • July 9, 2019
Icegram is a plugin that helps you collect email addresses for your newsletter. Other features include light-box popup offers, header action bars, toast notifications, and…
Read the Post
Seven Things You Should Monitor in WordPress Activity Logs
  • Security Education
  • Website Security
  • WordPress Security

7 Things You Should Monitor in WordPress Activity Logs

  • Victor Santoyo
  • July 8, 2019
WordPress activity logs can be helpful when troubleshooting or trying to identify a hack. In this article, you’ll learn about the seven things you should…
Read the Post
  • Security Advisory
  • Website Malware Infections
  • Website Security
  • WordPress Security

Spam That Fits Your Website

  • Gabriel Barbosa
  • July 5, 2019
Most of the time when we talk about spam, we think about mindless machines that create posts or comments to advertise a business related to…
Read the Post
WordPress Vulnerability
  • Vulnerability Disclosure
  • Website Malware Infections
  • Website Security
  • WordPress Security

WordPress Plugin WP Statistics: Unauthenticated Stored XSS Under Certain Configurations

  • Antony Garand
  • July 3, 2019
The WordPress plugin WP Statistics, which has an active installation base of 500k users, has an unauthenticated stored XSS vulnerability on versions prior to 12.6.7.…
Read the Post
Massive 1800ForBail WordPress Hacks
  • WordPress Security

Massive 1800ForBail WordPress Hacks

  • Denis Sinegubko
  • June 28, 2019
Sucuri malware analyst Kaushal Bhavsar recently brought our attention to a massive campaign responsible for adding either “1800ForBail” or “1800ForBail – One+Number” keywords to the…
Read the Post
Labs Note
  • Sucuri Labs
  • Website Malware Infections
  • WordPress Security

Plugins Under Attack: June 2019

  • John Castro
  • June 28, 2019
A long-lasting malware campaign (1,2) targeting deprecated, vulnerable versions of plugins continues to be leveraged by attackers to inject malicious scripts into affected websites. As…
Read the Post
Labs Note
  • Sucuri Labs
  • Website Malware Infections
  • WordPress Security

Spam Injector Masquerading as Google Analytics

  • Keith Petkus
  • June 21, 2019
The domain en-google-analytic[.]com, currently sinkholed by a security intelligence company, has been observed by our team to be part of a mass spam injection campaign.…
Read the Post
Labs Note
  • Sucuri Labs
  • Website Malware Infections
  • WordPress Security

Leveraging Stored Procedures for Nefarious Purposes

  • Bruno Zanelato
  • June 19, 2019
Here at Sucuri, we clean thousands of websites on a daily basis, and while some of them are easy to solve, others may require more…
Read the Post
Labs Note
  • Sucuri Labs
  • Website Malware Infections
  • WordPress Security

Hiding a Hacktool Using a .jpg Extension

  • Gabriel Barbosa
  • June 17, 2019
Hackers will do anything to hide their intentions behind the files they upload to compromised websites. This time, we’ve found a hacktool hidden inside a…
Read the Post
Search
Sucuri Sidebar Malware Removal to Signup Page
Sucuri Logo

Let’s Connect

Products
Website Firewall Website Security Platform WordPress Security Website Backups Hack Assistance Pricing
Solutions
DDoS Protection Malware Detection Malware Removal Malware Prevention Blacklist Removal SEO Spam Removal
USE CASES
Developers Ecommerce Agency Plans Enterprise Services HTTPS/2 Virtual Patching
Support
Knowledge Base SiteCheck Guides Research Labs Report Abuse Status Report
Company
About Sucuri Contact Blog Referral Partners Testimonials
Terms of Use Privacy Policy Do Not Sell My Personal Information Frequently Asked Questions

© 2025 GoDaddy Mediatemple, Inc., d/b/a Sucuri. All rights reserved.

back to top

'