Sucuri Blog
  • Products
    • Website Security Platform
    • Website Firewall (WAF)
    • Multi-Site plans
    • Custom & Enterprise Plans
    • Partnerships
  • Features
    • Detection
      Website Monitoring & Alerts
    • Protection
      Future Website Hacks
    • Performance
      Speed Up Your Website
    • Response
      Help For Hacked Websites
    • Backups
      Disaster Recovery Plan
  • Resources
    • Guides
    • Webinars
    • Infographics
    • Blog
    • SiteCheck
    • Reports
    • Email Courses
  • Pricing
  • Immediate Help
  • Login
Sucuri Blog
  • Products
    • Website Security Platform
    • Website Firewall (WAF)
    • Multi-Site plans
    • Custom & Enterprise Plans
    • Partnerships
  • Features
    • Detection
      Website Monitoring & Alerts
    • Protection
      Future Website Hacks
    • Performance
      Speed Up Your Website
    • Response
      Help For Hacked Websites
    • Backups
      Disaster Recovery Plan
  • Resources
    • Guides
    • Webinars
    • Infographics
    • Blog
    • SiteCheck
    • Reports
    • Email Courses
  • Pricing
  • Immediate Help
  • Login
  • Immediate Help
Login
Login

New Customer?

Sign up now.
  • Submit a ticket
  • Knowledge base
  • Chat now

Browsing Category

WordPress Security

662 posts
  • Website Security
  • WordPress Security

Hacked Websites Redirect to Bitcoin

  • Denis Sinegubko
  • May 4, 2015
Recently, we began to notice that some hacked websites were redirecting traffic from certain browsers to the BitCoin site, bitcoin.org. What’s going on? Is Bitcoin using…
Read the Post

Critical Persistent XSS 0day in WordPress

  • Marc-Alexandre Montpas
  • April 27, 2015
*Update 2015-04-27*: A patch has been released and made available by the WordPress Core Team in version 4.2.1 – Please update immediately. Yes, you’ve read…
Read the Post

Security Advisory: XSS Vulnerability Affecting Multiple WordPress Plugins

  • Daniel Cid
  • April 20, 2015
Multiple WordPress Plugins are vulnerable to Cross-site Scripting (XSS) due to the misuse of the add_query_arg() and remove_query_arg() functions. These are popular functions used by…
Read the Post
  • Security Advisory
  • WordPress Security

FBI Public Service Annoucement: Defacements Exploiting WordPress Vulnerabilities

  • Daniel Cid
  • April 7, 2015
The US Federal Bureau of Investigation (FBI) just released a public service announcement (PSA) to the public about a large number of websites being exploited…
Read the Post
  • Ecommerce Security
  • Security Advisory
  • Vulnerability Disclosure
  • WordPress Security

Security Advisory: Persistent XSS in WP-Super-Cache

  • Marc-Alexandre Montpas
  • April 7, 2015
During a routine audit for our Website Firewall (WAF), we discovered a dangerous persistent XSS vulnerability affecting the very popular WP-Super-Cache plugin (more than a…
Read the Post

Website Malware – The SWF iFrame Injector Evolves

  • Peter Gramantik
  • April 2, 2015
Last year, we released a post about a malware injector found in an Adobe Flash (.swf) file. In that post, we showed how a SWF…
Read the Post
  • Joomla Security
  • Website Malware Infections
  • Website Security
  • WordPress Security

WordPress Malware Causes Psuedo-Darkleech Infection

  • Denis Sinegubko
  • March 26, 2015
Darkleech is a nasty malware infection that infects web servers at the root level. It use malicious Apache modules to insert hidden iframes with certain…
Read the Post
  • Security Education
  • Vulnerability Disclosure
  • WordPress Security

Understanding WordPress Plugin Vulnerabilities

  • Daniel Cid
  • March 17, 2015
When WordPress vulnerabilities are disclosed in plugins, there are often many questions. Some are minor issues, some are more relevant, while others are what we’d…
Read the Post

Inverted WordPress Trojan

  • Denis Sinegubko
  • March 11, 2015
A trojan (or trojan horse) is software that does (or pretends to be doing) something useful but also contains a secret malicious payload that inconspicuously…
Read the Post
  • Security Advisory
  • Vulnerability Disclosure
  • WordPress Security

Security Advisory: MainWP-Child WordPress Plugin

  • Mickael Nadeau
  • March 9, 2015
During a routine audit of our Website Firewall (WAF), we found a critical vulnerability affecting the popular MainWP Child WordPress plugin. According to WordPress.org, it…
Read the Post

Malware Cleanup to Arbitrary File Upload in Gravity Forms

  • Rodrigo Escobar
  • February 26, 2015
During our regular cleanup process we came across a reinfection case that caught our attention. This particular environment didn’t have anything special or fancy, it…
Read the Post
Search
Sucuri Sidebar Malware Removal to Signup Page
Sucuri Logo

Let’s Connect

Products
Website Firewall Website Security Platform WordPress Security Website Backups Hack Assistance Pricing
Solutions
DDoS Protection Malware Detection Malware Removal Malware Prevention Blacklist Removal SEO Spam Removal
USE CASES
Developers Ecommerce Agency Plans Enterprise Services HTTPS/2 Virtual Patching
Support
Knowledge Base SiteCheck Guides Research Labs Report Abuse Status Report
Company
About Sucuri Contact Blog Referral Partners Testimonials
Terms of Use Privacy Policy Do Not Sell My Personal Information Frequently Asked Questions

© 2025 GoDaddy Mediatemple, Inc., d/b/a Sucuri. All rights reserved.

back to top

'