wp_uploader.php: Simple and Effective Uploader

wp_uploader.php: Simple and Effective Uploader
It takes less than 100 characters of PHP code to create an uploader that can be placed on a compromised website to act as a backdoor.
Read more →

DarkClownSecurity Web Shell

DarkClownSecurity Web Shell
How a PHP web shell uses basic functions like tempname, require, and urldecode to remain lowkey.
Read more →

Prestashop Backdoor - SuperAdmin Injector

Prestashop Backdoor - SuperAdmin Injector
A malware injection used to automatically inject a SuperAdmin user into the Prestashop _employees database table.
Read more →

Magento Multiversion Backdoor

Magento Multiversion Backdoor
Magento’s continued migration from 1.x to 2.x versions has led malware authors to modify existing malicious tools to accomodate for the major differences between these Magento versions.
Read more →

How-to Use A PHP Backdoor ‘One-liner’ and How It Evades Detection

How-to Use A PHP Backdoor 'One-liner' and How It Evades Detection
How do hackers use a PHP backdoor that is injected into a single line of code in a website’s file? Why is it better at evading malware scanners than other PHP backdoors?
Read more →
Disclaimer: The research posted on this website is for information purposes only. Do not use it for illegal purposes.