Site hacked? Segurium finds the malicious code, strips it out, and puts your original file back. The free tier includes 3 cloud cleanups per rolling 30 days. Detection runs against a continuously updated cloud verdict database and catches injected code hiding inside legitimate plugin and theme files, not just uploaded shells. Cleaned files keep an encrypted one-click-restore backup. 2FA, firewall, geo-blocking, brute force protection and security headers are free on every install.
Hi Product Hunt.
I built Segurium after cleaning hacked WordPress sites by hand one too many times.
The pattern that pushed me into it: almost every free security plugin scans your site, lists the infected files, then puts the actual removal behind a paid plan or a paid incident service. You find out you are hacked, and there you sit.
Segurium removes the code. It hashes the files on the server, checks each hash against a cloud verdict database, strips the injection, and puts your original content back. A file that is nothing but malware, like an uploaded shell, gets emptied instead. Every original goes into an encrypted local backup first, so one click undoes a wrong call.
The free tier covers 3 cloud cleanups per rolling 30 days, enough for a typical incident. Integrity restore for core, plugin and theme files, plus firewall, brute-force protection, 2FA, geo-blocking and security headers, ship on every install. Free and paid alike.
GPL, source mirror at github.com/Segurium/segurium-plugin
Ask me anything about the detection side. I read every comment.