Sucuri Blog
  • Products
    • Website Security Platform
    • Website Firewall (WAF)
    • Multi-Site plans
    • Custom & Enterprise Plans
    • Partnerships
  • Features
    • Detection
      Website Monitoring & Alerts
    • Protection
      Future Website Hacks
    • Performance
      Speed Up Your Website
    • Response
      Help For Hacked Websites
    • Backups
      Disaster Recovery Plan
  • Resources
    • Guides
    • Webinars
    • Infographics
    • Blog
    • SiteCheck
    • Reports
    • Email Courses
  • Pricing
  • Immediate Help
  • Login
Sucuri Blog
  • Products
    • Website Security Platform
    • Website Firewall (WAF)
    • Multi-Site plans
    • Custom & Enterprise Plans
    • Partnerships
  • Features
    • Detection
      Website Monitoring & Alerts
    • Protection
      Future Website Hacks
    • Performance
      Speed Up Your Website
    • Response
      Help For Hacked Websites
    • Backups
      Disaster Recovery Plan
  • Resources
    • Guides
    • Webinars
    • Infographics
    • Blog
    • SiteCheck
    • Reports
    • Email Courses
  • Pricing
  • Immediate Help
  • Login
  • Immediate Help
Login
Login

New Customer?

Sign up now.
  • Submit a ticket
  • Knowledge base
  • Chat now
Magento 2 PHP Skimmer Saves To Image File
  • Ecommerce Security
  • Magento Security
  • Sucuri Labs
  • Website Security

Magento Credit Card Stealing Malware: gstaticapi

  • Krasimir Konov
  • September 25, 2020
Our team recently came across a malicious script used on a Magento website titled gstaticapi, which targeted checkout processes to capture and exfiltrate stolen information.…
Read the Post
Labs Note
  • Sucuri Labs
  • Website Malware Infections
  • Website Security

Malicious One-Liner Using Hastebin

  • Krasimir Konov
  • September 23, 2020
Short scripts that deliver malware to a website are nothing new, but during a recent investigation we found a script using hastebin[.]com, which is a…
Read the Post
Why Hackers Create Phishing Campaigns
  • Security Education
  • Sucuri Labs
  • Website Security

Phishing Page Targets AT&T’s Employee Multi-Factor Authentication

  • Luke Leal
  • September 22, 2020
Employees at companies of all sizes can be targets of phishing attacks, but certain corporations or industries can be more valuable to an attacker than…
Read the Post
W97M/Downloader Malware Dropper Served from Compromised Websites
  • Sucuri Labs
  • Website Malware Infections
  • Website Security

The Hidden PHP Malware that Reinfects Cleaned Files

  • Luke Leal
  • September 18, 2020
Website reinfections are a serious problem for website owners, and it can often be difficult to determine the cause behind the reinfection — especially if…
Read the Post
CLI CSS
  • Sucuri Labs
  • Website Malware Infections
  • Website Security

phpbash – A Terminal Emulator Web Shell

  • Luke Leal
  • September 16, 2020
It’s common for hackers to utilize post-compromise tools that contain a graphical user interface (GUI) that can be loaded in the web browser. A GUI…
Read the Post
DMARC security
  • Security Education
  • Sucuri Labs
  • Website Security

Missing DMARC Records Lead to Phishing

  • Kaushal Bhavsar
  • September 15, 2020
Email will continue to be the dominant mode of digital communication for the foreseeable future. However, the email framework was not designed with security in…
Read the Post
WordPress Redirect Hack via Test0.com/Default7.com
  • Sucuri Labs
  • Website Malware Infections
  • Website Security
  • WordPress Security

WordPress Malware Disables Security Plugins to Avoid Detection

  • Luke Leal
  • September 10, 2020
An alarm or monitoring system is a great tool that can be used to improve the security of a home or website, but what if…
Read the Post
Backdoors in Malicious Plugins
  • Sucuri Labs
  • Website Security
  • WordPress Security

Reflected XSS in WordPress Plugin Admin Pages

  • Antony Garand
  • September 8, 2020
The administrative dashboard in WordPress is a pretty safe place: Only elevated users can access it. Exploiting a plugin’s admin panel would serve very little…
Read the Post
WordPress Vulnerability
  • Vulnerability Disclosure

Insufficient Privilege Validation in NextScripts: Social Networks Auto-Poster

  • John Castro
  • September 4, 2020
NextScripts: Social Networks Auto-Poster is a plugin that  automatically publishes posts from your blog to your Social Media accounts such as Facebook, Twitter, Google+, Blogger,…
Read the Post
WordPress Vulnerability
  • Vulnerability Disclosure
  • WordPress Security

Critical Vulnerability in File Manager Plugin Affecting 700k WordPress Websites

  • Antony Garand
  • September 2, 2020
Yesterday, the WordPress plugin File Manager was updated, fixing a critical vulnerability allowing any website visitor to gain complete access to the website. Users of…
Read the Post
Labs Note
  • Sucuri Labs
  • Website Malware Infections
  • Website Security

Using assert() to Execute Malware in PHP 7 Environments

  • Krasimir Konov
  • September 1, 2020
Initially released December 2015, PHP 7 introduced a multitude of performance and security improvements. Approximately 43.7% of websites across the web currently use PHP 7.x,…
Read the Post
Search
Sucuri Sidebar Malware Removal to Signup Page
Sucuri Logo

Let’s Connect

Products
Website Firewall Website Security Platform WordPress Security Website Backups Hack Assistance Pricing
Solutions
DDoS Protection Malware Detection Malware Removal Malware Prevention Blacklist Removal SEO Spam Removal
USE CASES
Developers Ecommerce Agency Plans Enterprise Services HTTPS/2 Virtual Patching
Support
Knowledge Base SiteCheck Guides Research Labs Report Abuse Status Report
Company
About Sucuri Contact Blog Referral Partners Testimonials
Terms of Use Privacy Policy Do Not Sell My Personal Information Frequently Asked Questions

© 2025 GoDaddy Mediatemple, Inc., d/b/a Sucuri. All rights reserved.

back to top

'