As part of our regular research audits for our Sucuri Firewall, we discovered an SQL Injection vulnerability affecting the Ninja Forms plugin for WordPress, … [Read more...]
Drupal SQLi (Drupalgeddon) Attack Trend CVE-2014-3704 / SA-CORE-2014-005
It has been over 19 months since Drupalgeddon, which refers to Drupal’s Security Advisory (SA) SA-CORE-2014-005. For those unfamiliar with it, it was a highly … [Read more...]
Joomla SQL Injection Attacks in the Wild
Last week, the Joomla team released an update to patch a serious vulnerability on Joomla 3.x. This vulnerability, an SQL injection (CVE-2015-7858), allows for … [Read more...]
Common Website Security Terminology Defined
If you want to keep your website safe, it is important to understand the terminology used to describe the causes and effects of hacks. Software vulnerabilities … [Read more...]