Sucuri Blog
  • Products
    • Website Security Platform
    • Website Firewall (WAF)
    • Multi-Site plans
    • Custom & Enterprise Plans
    • Partnerships
  • Features
    • Detection
      Website Monitoring & Alerts
    • Protection
      Future Website Hacks
    • Performance
      Speed Up Your Website
    • Response
      Help For Hacked Websites
    • Backups
      Disaster Recovery Plan
  • Resources
    • Guides
    • Webinars
    • Infographics
    • Blog
    • SiteCheck
    • Reports
    • Email Courses
  • Pricing
  • Immediate Help
  • Login
Sucuri Blog
  • Products
    • Website Security Platform
    • Website Firewall (WAF)
    • Multi-Site plans
    • Custom & Enterprise Plans
    • Partnerships
  • Features
    • Detection
      Website Monitoring & Alerts
    • Protection
      Future Website Hacks
    • Performance
      Speed Up Your Website
    • Response
      Help For Hacked Websites
    • Backups
      Disaster Recovery Plan
  • Resources
    • Guides
    • Webinars
    • Infographics
    • Blog
    • SiteCheck
    • Reports
    • Email Courses
  • Pricing
  • Immediate Help
  • Login
  • Immediate Help
Login
Login

New Customer?

Sign up now.
  • Submit a ticket
  • Knowledge base
  • Chat now

Browsing Category

WordPress Security

680 posts

Massive Malware Infection Breaking WordPress Sites

  • Peter Gramantik
  • July 22, 2014
Update: We identified the root cause: MailPoet Vulnerability Exploited in the Wild – Breaking Thousands of WordPress Sites. The last few days has brought about…
Read the Post

Disclosure: Insecure Nonce Generation in WPtouch

  • Marc-Alexandre Montpas
  • July 14, 2014
If you use the popular WPtouch plugin (5M+ downloads) on your WordPress website, you should update it immediately. During a routine audit for our WAF,…
Read the Post

Ask Sucuri: Who is Logging into My WordPress Site?

  • Daniel Cid
  • July 3, 2014
Today, we’re going to revisit our Q&A series. If you have any questions about malware, blacklisting, or security in general, send them to us at:…
Read the Post

Remote File Upload Vulnerability in WordPress MailPoet Plugin (wysija-newsletters)

  • Daniel Cid
  • July 1, 2014
Marc-Alexandre Montpas, from our research team, found a serious security vulnerability in the MailPoet WordPress plugin. This bug allows an attacker to upload any file…
Read the Post

TimThumb WebShot Code Execution Exploit (Zeroday)

  • Daniel Cid
  • June 25, 2014
If you are still using Timthumb after the serious vulnerability that was found on it last year, you have one more reason to be concerned.…
Read the Post

Spam Hack Targets WordPress Core Install Directories

  • Daniel Cid
  • June 24, 2014
Do you run your website on WordPress? Have you checked the integrity of your core install lately for SPAM like “Google Pharmacy” stores or other…
Read the Post

WordPress Plugin Alert – LoginWall Imposter Exposed

  • Rafael Capovilla
  • June 10, 2014
When you work with malware for a while, you start to become very good at pattern recognition. A couple sites in every hundred cleaned might…
Read the Post

Vulnerability found in the All in One SEO Pack WordPress Plugin

  • Marc-Alexandre Montpas
  • May 31, 2014
The team behind the All in One SEO Pack just released a new version of their popular WordPress plugin. It is a security release patching…
Read the Post

BaDoink Website Redirect – Malicious Redirections to Porn Websites on Mobile Devices

  • Daniel Cid
  • May 26, 2014
The past week has brought about a large number of cases where compromised websites had hidden redirections to porn injected into their code. All the…
Read the Post

PHP Callback Functions: Another Way to Hide Backdoors

  • Peter Gramantik
  • April 25, 2014
We often find new techniques employed by malware authors. Some are very interesting, others are pretty funny, and then there are those that really stump…
Read the Post

Critical Update for JetPack WordPress Plugin

  • Daniel Cid
  • April 10, 2014
The Jetpack team just released a critical security update to fix a security vulnerability in the Jetpack WordPress plugin. The vulnerability allows an attacker to…
Read the Post
Search
Sucuri Sidebar Malware Removal to Signup Page
Sucuri Logo

Let’s Connect

Products
Website Firewall Website Security Platform WordPress Security Website Backups Hack Assistance Pricing
Solutions
DDoS Protection Malware Detection Malware Removal Malware Prevention Blacklist Removal SEO Spam Removal
USE CASES
Developers Ecommerce Agency Plans Enterprise Services HTTPS/2 Virtual Patching
Support
Knowledge Base SiteCheck Guides Research Labs Report Abuse Status Report
Company
About Sucuri Contact Blog Referral Partners Testimonials
Terms of Use Privacy Policy Do Not Sell My Personal Information Frequently Asked Questions

© 2025 GoDaddy Mediatemple, Inc., d/b/a Sucuri. All rights reserved.

back to top