Version Description
- Messaging and FAQ updates.
Download this release
Release Info
Developer | dd@sucuri.net |
Plugin | Sucuri Security – Auditing, Malware Scanner and Security Hardening |
Version | 1.7.2 |
Comparing to | |
See all releases |
Code changes from version 1.7.1 to 1.7.2
- readme.txt +63 -9
- sucuri.php +2 -2
readme.txt
CHANGED
@@ -1,12 +1,12 @@
|
|
1 |
-
=== Sucuri Security - Auditing, Malware Scanner and Hardening ===
|
2 |
Contributors: dd@sucuri.net
|
3 |
-
Donate Link: http://
|
4 |
-
Tags: malware, security, firewall, scan, spam, virus, sucuri, protection,WordPress Security, Login Security,Security Auditing,File Integrity,htaccess,phishing,backdoors,SQL Injection, RFI, LFI, XSS, CSRF,
|
5 |
Requires at least:3.2
|
6 |
-
Stable tag:1.7.
|
7 |
Tested up to: 4.0
|
8 |
|
9 |
-
The Sucuri WordPress Security plugin is
|
10 |
|
11 |
|
12 |
== Description ==
|
@@ -44,6 +44,10 @@ This is important because it allows you, the website owner, the ability keep a
|
|
44 |
good eye on the various changes occurring within your environment. Who is
|
45 |
logging in? What changes are being made?
|
46 |
|
|
|
|
|
|
|
|
|
47 |
This feature is logging all activity to the Sucuri cloud, for safe keeping.
|
48 |
This ensures that an attacker is not able to wipe your forensic data and
|
49 |
prevent further security analysis after a compromise. If an attacker is able
|
@@ -67,17 +71,25 @@ It will create a <strong>known good</strong> the minute the plugin is
|
|
67 |
installed. This will be of all the directories at the root of the install,
|
68 |
this includes plugins, themes and core files.
|
69 |
|
|
|
|
|
|
|
|
|
70 |
|
71 |
= Remote Security Malware Scanning =
|
72 |
|
73 |
This feature is powered by our very powerful scanning engine, found on our
|
74 |
-
free security scanner - <a href="http://sitecheck.sucuri.net">SiteCheck
|
75 |
important to take some time to <a
|
76 |
href="http://blog.sucuri.net/2012/10/ask-sucuri-how-does-sitecheck-work.html">understand
|
77 |
how this scanner works</a>.
|
78 |
|
|
|
|
|
|
|
|
|
79 |
There are limitations with the way this scanner works, you can find more info
|
80 |
-
|
81 |
|
82 |
|
83 |
= Security Blacklist Monitoring =
|
@@ -116,6 +128,11 @@ configurations you find in various WordPress Security presentations. In this
|
|
116 |
section, we add those that we feel to be most effective, and that complement
|
117 |
the entire Sucuri suite of products.
|
118 |
|
|
|
|
|
|
|
|
|
|
|
119 |
|
120 |
= Post-Hack Security Actions =
|
121 |
|
@@ -123,6 +140,10 @@ Regardless of how good your security posture is, sometimes it’s impossible to
|
|
123 |
prevent the inevitable. When this happens, we’ve included a section to help
|
124 |
you walk through the three key things you should do after a compromise.
|
125 |
|
|
|
|
|
|
|
|
|
126 |
|
127 |
= Security Notifications =
|
128 |
|
@@ -134,7 +155,7 @@ website owner, you have the option to make these security alerts as quiet or
|
|
134 |
noisy as you would like.
|
135 |
|
136 |
|
137 |
-
= Website Firewall (
|
138 |
|
139 |
This is by far the coolest security feature Sucuri has to offer everyday
|
140 |
website owners. It’s an enterprise grade Website Firewall known as CloudProxy.
|
@@ -158,7 +179,11 @@ This is coupled with a number of features like:
|
|
158 |
</ol>
|
159 |
|
160 |
This is not included as a <strong>Free</strong> option to the plugin, but is
|
161 |
-
integrated so that if purchased you are able to activate.
|
|
|
|
|
|
|
|
|
162 |
|
163 |
The Sucuri Security WordPress Security plugin is built by the team that is
|
164 |
known for their proactive approach to security. It is built using intelligence
|
@@ -174,6 +199,11 @@ href="https://sucuri.net/wordpress-security-plugin-installation">A detailed
|
|
174 |
breakdown of the process is available, including images,</a> below however we
|
175 |
outline the bare minimum steps.
|
176 |
|
|
|
|
|
|
|
|
|
|
|
177 |
To install Sucuri Security and complement your Security posture:
|
178 |
|
179 |
|
@@ -222,6 +252,22 @@ security needs as you see fit.
|
|
222 |
|
223 |
== FAQ ==
|
224 |
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
225 |
= If I install the Sucuri Security plugin do I get a Sucuri account? =
|
226 |
|
227 |
No, this is a free plugin that we offer at no charge. It does not mean you get a free account.
|
@@ -296,11 +342,19 @@ No, it does not.
|
|
296 |
|
297 |
Not that we are aware of.
|
298 |
|
|
|
|
|
|
|
|
|
|
|
299 |
|
300 |
|
301 |
|
302 |
== Changelog ==
|
303 |
|
|
|
|
|
|
|
304 |
= 1.7.1 =
|
305 |
* Fixed remote scanning that was not loading automatically on some installs.
|
306 |
|
1 |
+
=== Sucuri Security - Auditing, Malware Scanner and Security Hardening ===
|
2 |
Contributors: dd@sucuri.net
|
3 |
+
Donate Link: http://sucuri.net/
|
4 |
+
Tags: malware, security, firewall, scan, spam, virus, sucuri, protection,WordPress Security, Login Security,Security Auditing,File Integrity,htaccess,phishing,backdoors,SQL Injection, RFI, LFI, XSS, CSRF, website firewall, Website Security, Performance Optimization, Zero Day, Software Vulnerability, Exploits, Hacks, Attackers, Bad Actors, Reverse Proxy, Two Factor Security, Two Factor Authentication, Security Logs, HeatBleed Vulnerability, Website Protection, Bash Vulnerability, RevSlider Vulnerability, MailPoet Vulnerability, Malware Prevention, Website Firewall, Website AntiVirus, Security Response, Security Detection, Security Prevention
|
5 |
Requires at least:3.2
|
6 |
+
Stable tag:1.7.2
|
7 |
Tested up to: 4.0
|
8 |
|
9 |
+
The Sucuri WordPress Security plugin is a security toolset for security integrity monitoring, malware detection and security hardening.
|
10 |
|
11 |
|
12 |
== Description ==
|
44 |
good eye on the various changes occurring within your environment. Who is
|
45 |
logging in? What changes are being made?
|
46 |
|
47 |
+
Here is a video of the Security Activity Monitoring feature:
|
48 |
+
|
49 |
+
[youtube https://www.youtube.com/watch?v=RwEwJgL2-m8]
|
50 |
+
|
51 |
This feature is logging all activity to the Sucuri cloud, for safe keeping.
|
52 |
This ensures that an attacker is not able to wipe your forensic data and
|
53 |
prevent further security analysis after a compromise. If an attacker is able
|
71 |
installed. This will be of all the directories at the root of the install,
|
72 |
this includes plugins, themes and core files.
|
73 |
|
74 |
+
Here is a video of the Security File Integrity Monitoring feature:
|
75 |
+
|
76 |
+
[youtube https://www.youtube.com/watch?v=JGbHq7OFs3Q]
|
77 |
+
|
78 |
|
79 |
= Remote Security Malware Scanning =
|
80 |
|
81 |
This feature is powered by our very powerful scanning engine, found on our
|
82 |
+
free security scanner - <a href="http://sitecheck.sucuri.net">SiteCheck</a>. It’s
|
83 |
important to take some time to <a
|
84 |
href="http://blog.sucuri.net/2012/10/ask-sucuri-how-does-sitecheck-work.html">understand
|
85 |
how this scanner works</a>.
|
86 |
|
87 |
+
Here is a video of the Remote Security Malware Scanning feature:
|
88 |
+
|
89 |
+
[youtube https://www.youtube.com/watch?v=JGbHq7OFs3Q]
|
90 |
+
|
91 |
There are limitations with the way this scanner works, you can find more info
|
92 |
+
in that in the FAQ section.
|
93 |
|
94 |
|
95 |
= Security Blacklist Monitoring =
|
128 |
section, we add those that we feel to be most effective, and that complement
|
129 |
the entire Sucuri suite of products.
|
130 |
|
131 |
+
Here is a video of the Effective Security Hardening feature:
|
132 |
+
|
133 |
+
[youtube https://www.youtube.com/watch?v=Nuksi7rMNV0]
|
134 |
+
|
135 |
+
|
136 |
|
137 |
= Post-Hack Security Actions =
|
138 |
|
140 |
prevent the inevitable. When this happens, we’ve included a section to help
|
141 |
you walk through the three key things you should do after a compromise.
|
142 |
|
143 |
+
Here is a video of the Post-Hack Security Actions feature:
|
144 |
+
|
145 |
+
[youtube https://www.youtube.com/watch?v=cEPxbe9hoHw]
|
146 |
+
|
147 |
|
148 |
= Security Notifications =
|
149 |
|
155 |
noisy as you would like.
|
156 |
|
157 |
|
158 |
+
= Sucuri CloudProxy Website Firewall (Add On Security Service) =
|
159 |
|
160 |
This is by far the coolest security feature Sucuri has to offer everyday
|
161 |
website owners. It’s an enterprise grade Website Firewall known as CloudProxy.
|
179 |
</ol>
|
180 |
|
181 |
This is not included as a <strong>Free</strong> option to the plugin, but is
|
182 |
+
integrated so that if purchased you are able to activate. If you prefer to leverage the Sucuri Security Website Firewall (CloudProxy) product by itself, you have the option to operate the <a href="https://wordpress.org/plugins/sucuri-cloudproxy-waf/">Website Firewall WordPress Security</a> plugin in standalone mode.
|
183 |
+
|
184 |
+
Here is a video of the Sucuri Security Website Firewall (Add On Security Service) feature:
|
185 |
+
|
186 |
+
[youtube https://www.youtube.com/watch?v=fN-3DLObLF0]
|
187 |
|
188 |
The Sucuri Security WordPress Security plugin is built by the team that is
|
189 |
known for their proactive approach to security. It is built using intelligence
|
199 |
breakdown of the process is available, including images,</a> below however we
|
200 |
outline the bare minimum steps.
|
201 |
|
202 |
+
Here is a quick video walking you through the installation and configuration of the Sucuri Security WordPress Security plugin:
|
203 |
+
|
204 |
+
[youtube https://www.youtube.com/watch?v=KC3UC_Y27G0]
|
205 |
+
|
206 |
+
|
207 |
To install Sucuri Security and complement your Security posture:
|
208 |
|
209 |
|
252 |
|
253 |
== FAQ ==
|
254 |
|
255 |
+
More information can be found on the the Sucuri Security WordPress Security
|
256 |
+
plugin via our free [Knowledge Base](http://kb.sucuri.net/plugins/WordPress+Plugin/index).
|
257 |
+
|
258 |
+
= What does this plugin do that other WordPress security plugins don't do? =
|
259 |
+
|
260 |
+
A few other security plugins provide activity monitoring features, but few do
|
261 |
+
them well. The activity monitoring in this plugin is second to none, tying the
|
262 |
+
activity into the Sucuri Security Operations Center (SOC) ensuring it's safe
|
263 |
+
keeping.
|
264 |
+
|
265 |
+
This security plugin also takes a different approach to security plugins,
|
266 |
+
stripping it of what we categorize as unnecessary features for a basic website
|
267 |
+
end-user. We've narrowed the key features we felt were most pertinent to any
|
268 |
+
website owner and integrated them into this plugin.
|
269 |
+
|
270 |
+
|
271 |
= If I install the Sucuri Security plugin do I get a Sucuri account? =
|
272 |
|
273 |
No, this is a free plugin that we offer at no charge. It does not mean you get a free account.
|
342 |
|
343 |
Not that we are aware of.
|
344 |
|
345 |
+
= Do I need to run this plugin to get the Website Firewall ad-on feature? =
|
346 |
+
|
347 |
+
No, it is not required. The Website Firewall (CloudProxy) runs in the cloud without
|
348 |
+
the need of anything installed. This plugin only helps see and manage the
|
349 |
+
service from the WordPress dashboard.
|
350 |
|
351 |
|
352 |
|
353 |
== Changelog ==
|
354 |
|
355 |
+
= 1.7.2 =
|
356 |
+
* Messaging and FAQ updates.
|
357 |
+
|
358 |
= 1.7.1 =
|
359 |
* Fixed remote scanning that was not loading automatically on some installs.
|
360 |
|
sucuri.php
CHANGED
@@ -4,7 +4,7 @@ Plugin Name: Sucuri Security - Auditing, Malware Scanner and Hardening
|
|
4 |
Plugin URI: http://wordpress.sucuri.net/
|
5 |
Description: The <a href="http://sucuri.net/" target="_blank">Sucuri</a> plugin provides the website owner the best Activity Auditing, SiteCheck Remote Malware Scanning, Effective Security Hardening and Post-Hack features. SiteCheck will check for malware, spam, blacklisting and other security issues like .htaccess redirects, hidden eval code, etc. The best thing about it is it's completely free.
|
6 |
Author: Sucuri, INC
|
7 |
-
Version: 1.7.
|
8 |
Author URI: http://sucuri.net
|
9 |
*/
|
10 |
|
@@ -66,7 +66,7 @@ define('SUCURISCAN', 'sucuriscan');
|
|
66 |
/**
|
67 |
* Current version of the plugin's code.
|
68 |
*/
|
69 |
-
define('SUCURISCAN_VERSION', '1.7.
|
70 |
|
71 |
/**
|
72 |
* The name of the Sucuri plugin main file.
|
4 |
Plugin URI: http://wordpress.sucuri.net/
|
5 |
Description: The <a href="http://sucuri.net/" target="_blank">Sucuri</a> plugin provides the website owner the best Activity Auditing, SiteCheck Remote Malware Scanning, Effective Security Hardening and Post-Hack features. SiteCheck will check for malware, spam, blacklisting and other security issues like .htaccess redirects, hidden eval code, etc. The best thing about it is it's completely free.
|
6 |
Author: Sucuri, INC
|
7 |
+
Version: 1.7.2
|
8 |
Author URI: http://sucuri.net
|
9 |
*/
|
10 |
|
66 |
/**
|
67 |
* Current version of the plugin's code.
|
68 |
*/
|
69 |
+
define('SUCURISCAN_VERSION', '1.7.2');
|
70 |
|
71 |
/**
|
72 |
* The name of the Sucuri plugin main file.
|