Category Archives 911 Hack Removal

PHP Open-Source Forum Software MyBB Vulnerable to Stored XSS - Exploited

MyBB, earlier known as MyBulletinBoard is a free and open source forum software based on PHP & My SQL. Recently it has been found vulnerable to a critical stored XSS (Cross-Site Scripting) and RCE (Remote-code Execution) in version 1.8.20 and before. Due to this any malefactor holding only a user account on the forum can hijack any board by sending a malicious private message to the administrator or by creating a malicious post.

Arbitrary File Upload in WP Plugin User Submitted Posts (ver

A fresh vulnerability disclosure in the series of WordPress plugins has come to notice. The WordPress plugin User Submitted Posts lets users upload posts and images from its front end feature. This WordPress plugin user submitted posts plugin currently has more than 30,000 installations. It was quite popular at the time a serious arbitrary file upload vulnerability was found in it. Learn more about the details of User Submitted Posts Exploit in this article.

How To Remove "Deceptive Site Ahead" Warning

I am sure, you got a mini heart attack to have your website flagged with a scary looking red screen with the message Deceptive Site Ahead in it. And you have been striving to retrieve your website from that danger ever since maybe. Yes, you are in the right place. In this article, we will try to answer most questions around that dreaded sentence “Deceptive Site Ahead”. Further, we will help you in removing that face shaming message from your website.

How to Remove “This site may be hacked” Warning message

There is seldom a more worrisome moment presents itself for a website owner than Google flagging your websites with a 'This site may be hacked' warning or a 'This site may harm your computer" flag. This warning could get your heart racing or this could give you troubled sleeps. And, this is bad for your beloved business because Google is scaring away your potential customers. You must have wondered why Google flagged your website and the possible reasons for this and how can you remove it? Read on to find out.

WordPress Plugin Slimstat Version

The website analytics plugin for WordPress Slimstat, has been found vulnerable to stored XSS (cross-site scripting) vulnerability in versions <=4.8. At moment of writing this blog, it is installed on 1,00,000+ websites. Slimstat is a known plugin for tracking website analytics in real time, it monitors and reports stats of access logs, returning customers and registered users, JavaScript events, etc.

What Does Search Engine Blacklist Mean?

Now, with the World Wide Web being a populated place and constantly growing with a rapid rate. It becomes important to keep a check on the websites that are malicious. And, blacklist those which have been hosted to carry out malicious activities over the internet. For this job, a search engine seems the best fit for search engines are where most people get in contact with different websites.

Critical XSS Vulnerability in FB messenger live chat

Owing to the widespread presence of WordPress, hackers, in fact try incessantly to make past every popular WordPress plugin. As a result, vulnerability disclosures in WordPress plugins almost seem like a never ending process. This time its Fb messenger live chat by Zotabox. So, FB messenger live chat by Zotabox has recently been disclosed to have persistent XSS vulnerability.

Close