Hackers target companies who revive the self hosted ad serving platform to inject & deliver a malicious ad to website visitors.
If the third party ad network, like Google DFP, hacked by barnacle, wouldn’t allow the revive ad tags
This Plug-in helps to protect ad server platforms from hackers and release your ad server from the block list.
Hackers can inject the malware to ad server domain through javascript DOM, cookies, etc.,
This plug-in protects from hackers by replacing the specific parameter name and delivery path cookie names and image store path, invocation tags.
This plug-in modified the Capping Cookie names for the ad Delivery with md5 Encryption.
Nowadays, many browsers block the document.write format. But this plug-in helps to replace the document.write to the document.write() in the JS Tags & also ad delivery.
Highlights Of the Plugin
Optimized tag which completely looks different from the default revive Adtag in order to prevent from the malware
Blocking MySql Injection Append / Prepend
Frequently Asked Questions
What types of malicious ad content does this plugin detect and block?
+
The plugin scans ad creatives for known malicious code signatures including drive-by download scripts, auto-redirect code that sends users to phishing or malware-hosting pages, clickjacking techniques, cryptomining scripts embedded in HTML5 ad creatives, and obfuscated JavaScript designed to evade standard content review. Suspicious creatives are flagged for admin review or automatically blocked from serving, depending on the configured security threshold.
How does the plugin help get a Revive Adserver domain removed from security blocklists?
+
When an ad server domain is flagged by a security vendor (such as being added to Google Safe Browsing, Malwarebytes, or browser-based blocklists), the cause is typically traceable to a specific malicious creative that was served. The plugin identifies and blocks the offending creative, providing the admin with evidence needed to submit a blocklist removal request to the security vendor. By demonstrating that the threat has been identified and removed, the removal process is significantly accelerated.
Can the plugin distinguish between a legitimate advertiser using aggressive JavaScript and an actual malicious creative?
+
The plugin uses a signature-based and heuristic scanning approach. Known malicious code patterns are matched against a threat database, while heuristic rules flag unusual JavaScript behaviours (unexpected external calls, DOM manipulation patterns, auto-redirect triggers) for admin review rather than automatic blocking. This two-tier approach reduces false positives for legitimate rich media creatives while ensuring genuinely malicious code is caught before delivery.
Will this plugin affect the approval workflow for legitimate advertisers submitting HTML5 or rich media creatives?
+
The plugin integrates into Revive Adserver's existing banner approval workflow. Creatives flagged by the scanner are held for admin review before approval, adding a security checkpoint without automatically rejecting legitimate creatives. Admins can review flagged items and whitelist trusted advertisers or specific creative patterns to streamline approval for established partners while maintaining scrutiny for new or unknown advertisers.
Is this plugin relevant for ad networks that accept creatives from third-party advertisers they do not fully control?
+
Yes, this is the exact scenario the plugin is designed for. Ad networks and publishers who accept HTML5, JavaScript-based, or third-party ad tag creatives from advertisers they have not fully vetted face the highest malvertising risk. The plugin provides an automated scanning layer that reduces reliance on manual creative review, which is impractical at scale and inconsistent across non-technical ad operations teams.