Sucuri Blog
  • Products
    • Website Security Platform
    • Website Firewall (WAF)
    • Multi-Site plans
    • Custom & Enterprise Plans
    • Partnerships
  • Features
    • Detection
      Website Monitoring & Alerts
    • Protection
      Future Website Hacks
    • Performance
      Speed Up Your Website
    • Response
      Help For Hacked Websites
    • Backups
      Disaster Recovery Plan
  • Resources
    • Guides
    • Webinars
    • Infographics
    • Blog
    • SiteCheck
    • Reports
    • Email Courses
  • Pricing
  • Immediate Help
  • Login
Sucuri Blog
  • Products
    • Website Security Platform
    • Website Firewall (WAF)
    • Multi-Site plans
    • Custom & Enterprise Plans
    • Partnerships
  • Features
    • Detection
      Website Monitoring & Alerts
    • Protection
      Future Website Hacks
    • Performance
      Speed Up Your Website
    • Response
      Help For Hacked Websites
    • Backups
      Disaster Recovery Plan
  • Resources
    • Guides
    • Webinars
    • Infographics
    • Blog
    • SiteCheck
    • Reports
    • Email Courses
  • Pricing
  • Immediate Help
  • Login
  • Immediate Help
Login
Login

New Customer?

Sign up now.
  • Submit a ticket
  • Knowledge base
  • Chat now
WordPress Vulnerability
  • Vulnerability Disclosure
  • WordPress Security

SQL Injection in Advance Contact Form 7 DB

  • John Castro
  • April 11, 2019
As part of our regular research audits for our Sucuri Firewall, we discovered an SQL injection vulnerability affecting 40,000+ users of the Advanced Contact Form…
Read the Post
Attacks on Closed WordPress Plugins
  • Security Advisory
  • Sucuri
  • Website Malware Infections
  • Website Security
  • WordPress Security

Attacks on Closed WordPress Plugins

  • John Castro
  • April 10, 2019
The WordPress plugin repository team may “close” plugins and restrict downloads when they become aware of a security issue that the developer cannot fix quickly.…
Read the Post
Labs Note
  • Sucuri Labs
  • Vulnerability Disclosure
  • Website Malware Infections
  • Website Security

ThinkPHP 5.x – Remote Code Execution Actively Exploited In The Wild

  • John Castro
  • April 8, 2019
Earlier this year, we noticed an increase in attacks aiming at ThinkPHP. ThinkPHP is a PHP framework that is very popular in Asia. If you…
Read the Post
DDoS Targeting WordPress Search
  • Security Advisory
  • Security Education
  • Website Security
  • WordPress Security

DDoS Targeting WordPress Search

  • Northon Torga
  • April 8, 2019
Have you ever stopped to think about how many resources a search engine has or if your website could handle the same amount of search…
Read the Post
WordPress Vulnerability Detail
  • Vulnerability Disclosure
  • Website Malware Infections
  • WordPress Security

SQL Injection in Duplicate-Page WordPress Plugin

  • Marc-Alexandre Montpas
  • April 5, 2019
While investigating the Duplicate Page plugin, we have discovered a dangerous SQL Injection vulnerability. Though the plugin wasn’t abused externally, the vulnerability impacted over 800,000…
Read the Post
Malware Campaigns Sharing Network Resources: r00ts.ninja
  • Website Malware Infections
  • Website Security
  • WordPress Security

Malware Campaigns Sharing Network Resources: r00ts.ninja

  • Luke Leal
  • April 2, 2019
We recently noticed an interesting example of network infrastructure resources being used over a period of time by more than one large scale malware campaign…
Read the Post
April Fool's Typo 3
  • Sucuri Updates
  • Website Security

April Fool’s Day – TYPO3 Overtakes WordPress as Most Attacked CMS Due to Popularity

  • Val Vesa
  • April 1, 2019
Disclaimer: This is an April Fool’s Day blog post and not all the information below is accurate. If you are looking for updated information on…
Read the Post
Labs Note
  • Sucuri Labs
  • Vulnerability Disclosure
  • Website Malware Infections
  • WordPress Security

Social Warfare Vulnerability Probes

  • Denis Sinegubko
  • March 29, 2019
After a recent disclosure of the Social Warfare plugin vulnerability, we’ve seen massive attacks that inject malicious JavaScripts into the plugin options. The vulnerability has…
Read the Post
Vulnerability in Magento
  • Vulnerability Disclosure

SQL Injection in Magento Core

  • Marc-Alexandre Montpas
  • March 28, 2019
Magento has released a new security update fixing multiple types of vulnerabilities including Cross-Site Request Forgery, Cross-Site Scripting, SQL Injection, and Remote Code Execution. To…
Read the Post
Labs Note
  • Sucuri Labs
  • Website Malware Infections
  • Website Security

Conditional redirection to an online pharmacy store

  • Moe O
  • March 28, 2019
During an investigation, a client reported some weird behavior from all incoming visits during their Google search engine result clicks are instantly redirected to an…
Read the Post
WordPress Vulnerability Detail
  • Vulnerability Disclosure
  • WordPress Security

Stored XSS Patched in WordPress 5.1.1

  • Marc-Alexandre Montpas
  • March 26, 2019
WordPress recently released an update, 5.1.1, which patches a stored XSS vulnerability in the platform’s comment system. Even 10 days after the release of this…
Read the Post
Search
Cross-Site Scripting Guide Sidebar
Sucuri Sidebar Malware Removal to Signup Page
Sucuri Logo

Let’s Connect

Products
Website Firewall Website Security Platform WordPress Security Website Backups Hack Assistance Pricing
Solutions
DDoS Protection Malware Detection Malware Removal Malware Prevention Blacklist Removal SEO Spam Removal
USE CASES
Developers Ecommerce Agency Plans Enterprise Services HTTPS/2 Virtual Patching
Support
Knowledge Base SiteCheck Guides Research Labs Report Abuse Status Report
Company
About Sucuri Contact Blog Referral Partners Testimonials
Terms of Use Privacy Policy Do Not Sell My Personal Information Frequently Asked Questions

© 2025 GoDaddy Mediatemple, Inc., d/b/a Sucuri. All rights reserved.

back to top

'