Sucuri

Thousands of WordPress sites infected with a Keylogger and cryptocurrency miner scriptsThousands of WordPress sites infected with a Keylogger and cryptocurrency miner scripts

Thousands of WordPress sites infected with a Keylogger and cryptocurrency miner scripts

Nearly 5,500 WordPress websites are infected with a malicious script that logs keystrokes and in some loads a cryptocurrency miner…

8 years ago
Critical vulnerability in Drupal References Module opens 120,000 Sites to hackCritical vulnerability in Drupal References Module opens 120,000 Sites to hack

Critical vulnerability in Drupal References Module opens 120,000 Sites to hack

A critical vulnerability affects the Drupal References module that is used by hundreds of thousands of websites using the popular CMS.…

8 years ago
SQLi flaw in the NextGEN Gallery plugin exposes at risk of hack more than 1 Million WordPress InstallsSQLi flaw in the NextGEN Gallery plugin exposes at risk of hack more than 1 Million WordPress Installs

SQLi flaw in the NextGEN Gallery plugin exposes at risk of hack more than 1 Million WordPress Installs

More than 1 million WordPress website are at risk due to a critical SQL injection vulnerability in the NextGEN Gallery…

8 years ago
Old CVE-2014-3704 flaw in Drupal still exploited in attacksOld CVE-2014-3704 flaw in Drupal still exploited in attacks

Old CVE-2014-3704 flaw in Drupal still exploited in attacks

More than 19 months after its public disclosure the CVE-2014-3704 is still exploited in attacks against Drupal-based websites. It was…

9 years ago
Thousands of WordPress websites used as a platform to launch DDOSThousands of WordPress websites used as a platform to launch DDOS

Thousands of WordPress websites used as a platform to launch DDOS

In a recent investigation case, security researchers at Sucuri revealed that 26,000 different WordPress sites were exploited to launch Layer…

9 years ago
Brute-Force amplification attacks on WordPress rely on XML-RPCBrute-Force amplification attacks on WordPress rely on XML-RPC

Brute-Force amplification attacks on WordPress rely on XML-RPC

Security experts at Sucuri have uncovered threat actors abusing an XML-RPC method to run Brute-Force amplification attacks on WordPress websites.…

10 years ago
Thousands of legitimate WordPress sites are serving malwareThousands of legitimate WordPress sites are serving malware

Thousands of legitimate WordPress sites are serving malware

Sucuri has noticed a spike in the number of compromised websites as part of a malware campaign which relies on…

10 years ago
Crooks are abusing Google Search Console to remain under the radarCrooks are abusing Google Search Console to remain under the radar

Crooks are abusing Google Search Console to remain under the radar

Experts at Sucuri revealed that cybercriminals are abusing Google Search Console to hide their presence in compromised websites, administrators are…

10 years ago
Magento payment card stealers are being used in the wildMagento payment card stealers are being used in the wild

Magento payment card stealers are being used in the wild

The security researchers at Sucuri firm discovered a malicious code that could be used to steal payment card data from…

10 years ago
Magento Flaw Exploited in the Wild a few hours after disclosureMagento Flaw Exploited in the Wild a few hours after disclosure

Magento Flaw Exploited in the Wild a few hours after disclosure

Sucuri revealed that cyber criminals are attempting to hijack online shops based on Magento platform by exploiting a recently disclosed…

10 years ago