06/26/2026
We had only just started working with a new client when a routine review uncovered something far more serious than we expected.
The website had been compromised for more than three years.
We found over 80 hidden spam posts linking to adult and spam websites, along with cloaking redirects designed to avoid detection. The client had no idea the attack was taking place.
Beyond the obvious security concerns, attacks like this can:
• Expose sensitive business or client information
• Damage your reputation
• Harm your visibility in search engines as spam pages get indexed by Google
• Slow down your website
• Open the door to additional malware and attacks
Before we found the compromise, we had already planned to migrate the client from Elementor to Bricks because of our approach to building faster, more maintainable, AND ethically0aligned websites.
As we investigated, we found evidence that leads us to believe the compromise likely originated from an outdated Elementor vulnerability.
Whether you're using Elementor or another page builder (we always recommend staying away from "israeIi" technology), the takeaway is the same: keeping your website, plugins, and themes up to date is essential.
If your website hasn't had a professional security review in a while—or you'd like to discuss migrating to a more secure, maintainable platform—we'd be happy to help.
Book a website security audit or consultation with Boon Digital Solutions before small issues become major problems.