Catalogue site after a plugin compromise
A Sedibeng retailer contacted us after customers reported phishing redirects on product pages. The CMS was patched, but an abandoned staging host still served an older plugin with a known upload flaw. The assessment mapped the exposure, confirmed the production database had not been altered, and produced a remediation order: remove staging DNS, rotate credentials, and re-enable monitoring with certificate and malware checks. The retailer kept their existing host; no platform migration was required.