Sucuri Blog
  • Products
    • Website Security Platform
    • Website Firewall (WAF)
    • Multi-Site plans
    • Custom & Enterprise Plans
    • Partnerships
  • Features
    • Detection
      Website Monitoring & Alerts
    • Protection
      Future Website Hacks
    • Performance
      Speed Up Your Website
    • Response
      Help For Hacked Websites
    • Backups
      Disaster Recovery Plan
  • Resources
    • Guides
    • Webinars
    • Infographics
    • Blog
    • SiteCheck
    • Reports
    • Email Courses
  • Pricing
  • Immediate Help
  • Login
Sucuri Blog
  • Products
    • Website Security Platform
    • Website Firewall (WAF)
    • Multi-Site plans
    • Custom & Enterprise Plans
    • Partnerships
  • Features
    • Detection
      Website Monitoring & Alerts
    • Protection
      Future Website Hacks
    • Performance
      Speed Up Your Website
    • Response
      Help For Hacked Websites
    • Backups
      Disaster Recovery Plan
  • Resources
    • Guides
    • Webinars
    • Infographics
    • Blog
    • SiteCheck
    • Reports
    • Email Courses
  • Pricing
  • Immediate Help
  • Login
  • Immediate Help
Login
Login

New Customer?

Sign up now.
  • Submit a ticket
  • Knowledge base
  • Chat now

Browsing Category

WordPress Security

662 posts
  • Security Advisory
  • Vulnerability Disclosure
  • WordPress Security

Security Advisory – WP-Slimstat 3.9.5 and Lower

  • Marc-Alexandre Montpas
  • February 24, 2015
WP-Slimstat users should update as soon as possible! During a routine audit for our WAF, we discovered a security bug that an attacker could, by…
Read the Post

Analysis of the Fancybox-For-WordPress Vulnerability

  • Marc-Alexandre Montpas
  • February 16, 2015
We were alerted last week of a malware outbreak affecting WordPress sites using version 3.0.2 and lower of the fancybox-for-wordpress plugin. As announced, here are some of the…
Read the Post

Zero-day in the Fancybox-for-WordPress Plugin

  • Daniel Cid
  • February 4, 2015
Update: We posted an analysis of the vulnerability following this post. Our research team was alerted to a possible malware outbreak affecting many WordPress websites.…
Read the Post
  • Security Advisory
  • Vulnerability Disclosure
  • WordPress Security

Advisory – Dangerous “nonce” Leak in UpdraftPlus

  • Marc-Alexandre Montpas
  • February 3, 2015
If you’re a user of the UpdraftPlus plugin for WordPress, now is the time to update. During a routine audit of our Website Firewall (WAF),…
Read the Post

Bogus Mobile-Shortcuts WordPress Plugin Injects SEO Spam

  • Ben Martin
  • January 30, 2015
Here at Sucuri we see countless cases of SEO spam where a website is compromised in order to spread pharmaceutical advertisements or backlinks to sites…
Read the Post

Critical “GHOST” Vulnerability Released

  • Marc-Alexandre Montpas
  • January 28, 2015
A very critical vulnerability affecting the GNU C Library (glibc) is threatening Linux servers for a remote command execution. This security bug was discovered by Qualys security…
Read the Post

DDoS from China – Facebook, WordPress and Twitter Users Receiving Sucuri Error Pages

  • Daniel Cid
  • January 27, 2015
Over the past few weeks our Security Operation Center (SOC) has been seeing some unique and very suspicious requests to some of our servers. At…
Read the Post
  • Vulnerability Disclosure
  • WordPress Security

Security Advisory – Vulnerabilities in Pagelines for WordPress

  • Marc-Alexandre Montpas
  • January 21, 2015
Users of both the Pagelines and Platform themes should update as soon as possible. During a routine audit for our WAF, we found two dangerous issues: A…
Read the Post

WP Symposium – Zero Day Vulnerability Dangers

  • David Dede
  • December 30, 2014
Our friends at SpiderLabs released a blog post today talking about the latest WP Symposium file upload vulnerability, and the attacks they have been seeing…
Read the Post

Analyzing The WordPress SoakSoak Favicon Backdoor

  • Denis Sinegubko
  • December 29, 2014
This post is a dissection of one of a few backdoor variations hackers are uploading via the RevSlider security hole. We also provide webmasters a…
Read the Post

New Malware Campaign – WPcache-Blogger – Affects Thousands more WordPress Websites via RevSlider

  • Daniel Cid
  • December 24, 2014
If SoakSoak wasn’t enough, we are starting to see a new malware campaign leveraging the RevSlider vulnerability and compromising thousands of WordPress sites in the…
Read the Post
Search
Sucuri Sidebar Malware Removal to Signup Page
Sucuri Logo

Let’s Connect

Products
Website Firewall Website Security Platform WordPress Security Website Backups Hack Assistance Pricing
Solutions
DDoS Protection Malware Detection Malware Removal Malware Prevention Blacklist Removal SEO Spam Removal
USE CASES
Developers Ecommerce Agency Plans Enterprise Services HTTPS/2 Virtual Patching
Support
Knowledge Base SiteCheck Guides Research Labs Report Abuse Status Report
Company
About Sucuri Contact Blog Referral Partners Testimonials
Terms of Use Privacy Policy Do Not Sell My Personal Information Frequently Asked Questions

© 2025 GoDaddy Mediatemple, Inc., d/b/a Sucuri. All rights reserved.

back to top

'