Archive | Security

RSS feed for this section

2017 and the Internet: our predictions

An abbreviated version of this post originally appeared on TechCrunch Looking back over 2016, we saw the good and bad that comes with widespread use and abuse of the Internet. In both Gabon and Gambia, Internet connectivity was disrupted during elections. The contested election in Gambia started with an Internet blackout that lasted a short […]

Session Stealer Script Used In OpenCart

With so many open-source ecommerce platforms available in the market, selling online is an appealing and easy option for any store owner. In a few clicks you can set up an online storefront and sell your products. While the process to get the site up may be simple, there are always risks that arise when […]

Removing Images from Google Local Business Listings

As a business owner, the last thing you want is for a potential customer to search Google for your business and find a lewd image. The way your website appears to searchers is incredibly important to your brand reputation and trustworthiness. Search engine optimization (SEO) professionals constantly experiment with ways to satisfy Google’s secret and […]

So you want to expose Go on the Internet

This piece was originally written for the Gopher Academy advent series. We are grateful to them for allowing us to republish it here. Back when crypto/tls was slow and net/http young, the general wisdom was to always put Go servers behind a reverse proxy like NGINX. That’s not necessary anymore! At Cloudflare we recently experimented […]

PrestaShop Attack Steals Login Credentials

Attackers compromise sites with a number of goals in mind – also referred to as actions on objective. In some instances they aim to abuse resources or gain SEO power, and in others they are seeking access to sensitive data, also known as data exfiltration. The Rise in Cyber Stealing Lately we’ve noticed an increase […]

Labs Notes Monthly Recap – Nov/2016

Time for another monthly recap! If you haven’t seen the other monthly recaps, make sure to check out October and September. Our malware research and incident response teams publish technical content in the Sucuri Labs Notes. The knowledge and recommendations are useful to keep your website and visitors safe. This month we saw a large variety […]

Ask Sucuri: How to Stop Brute Force Attacks?

Ask Sucuri: My site is under a brute force attack. What can I do? How can we solve this password guessing problem known as brute forcing? This is a common question we get from users of our WordPress plugin and from the overall community. Brute force attacks are very common, but most people do not […]

Cloudflare acquires Eager

In 2011 we launched the Cloudflare Apps platform in an article that first declared Cloudflare as “not … the sexiest business in the world.” Sexy or not, Cloudflare has since grown from the 3.5 billion pageviews a month to 1.3 trillion per month today. Along the way, we’ve powered more than a million app installations […]

How Scammers Abuse Baidu Search Results

If you use Skype, recently you may have received Baidu link spam from some of your contacts. The links look like this: www.baidu[.]com/link?url=_QIcrpeV-oOPb6HGTgigvW00e0fiBQyFjSui12FrARO#emubahyt= When you click these links you end up on fake news sites with articles about a new miracle medicine that may help you lose weight or double your IQ. Here are the typical headlines […]