⤷ Title: Irony Alert: ImunifyAV Malware Scanner Vulnerable to Remote Code Execution (RCE)
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sun, 16 Nov 2025 06:35:22 +0000
════════════════════════
⌗ Tags: #Vulnerability #AI_Bolit #cPanel #HostingSecurity #Imunify360 #ImunifyAV #Plesk #RCE #RemoteCodeExecution
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sun, 16 Nov 2025 06:35:22 +0000
════════════════════════
⌗ Tags: #Vulnerability #AI_Bolit #cPanel #HostingSecurity #Imunify360 #ImunifyAV #Plesk #RCE #RemoteCodeExecution
Penetration Testing Tools
Irony Alert: ImunifyAV Malware Scanner Vulnerable to Remote Code Execution (RCE)
A critical RCE flaw was found in the ImunifyAV malware scanner's AI-Bolit component, allowing arbitrary code execution during the analysis of obfuscated PHP files. Patch immediately!
⤷ Title: Critical cPanel Flaw (CVSS 9.3) Allows Directory Traversal LPE for Full Server Takeover
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 03 Dec 2025 04:29:58 +0000
════════════════════════
⌗ Tags: #Vulnerability #CPanel #Critical Vulnerability #Directory Traversal #LPE #privilege escalation #Shared Hosting #Team Manager API
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 03 Dec 2025 04:29:58 +0000
════════════════════════
⌗ Tags: #Vulnerability #CPanel #Critical Vulnerability #Directory Traversal #LPE #privilege escalation #Shared Hosting #Team Manager API
Daily CyberSecurity
Critical cPanel Flaw (CVSS 9.3) Allows Directory Traversal LPE for Full Server Takeover
A Critical (CVSS 9.3) LPE flaw in cPanel's Team Manager API allows a standard user to break out of their directory via path traversal and compromise the shared hosting server. Update immediately.
⤷ Title: Student Sells Hacked Sites: Beima Web Shell Undetectable, Targets .Gov & .Edu
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 10 Dec 2025 04:08:15 +0000
════════════════════════
⌗ Tags: #Malware #Bangladesh #Beima #Compromised Websites #cPanel #cybercrime #cybersecurity #Howler Cell #Telegram #Web Shell #WordPress
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 10 Dec 2025 04:08:15 +0000
════════════════════════
⌗ Tags: #Malware #Bangladesh #Beima #Compromised Websites #cPanel #cybercrime #cybersecurity #Howler Cell #Telegram #Web Shell #WordPress
Penetration Testing Tools
Student Sells Hacked Sites: Beima Web Shell Undetectable, Targets .Gov & .Edu
Researchers from Howler Cell have detailed an underground marketplace for compromised websites operated by students and freelancers across
⤷ Title: cPanel Issues Emergency Patch for All Supported Versions
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 29 Apr 2026 01:16:31 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Authentication Vulnerability #CPanel #cybersecurity #infosec #Patch Alert #security update #Server Management #Server Security #SysAdmin #Web Hosting #WHM
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 29 Apr 2026 01:16:31 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Authentication Vulnerability #CPanel #cybersecurity #infosec #Patch Alert #security update #Server Management #Server Security #SysAdmin #Web Hosting #WHM
Daily CyberSecurity
Exploited in the Wild: PoC Released for cPanel CVE-2026-41940 Authentication Bypass Zero-Day
cPanel issues emergency patches for a critical authentication vulnerability affecting all supported versions. Run /scripts/upcp --force immediately to patch.
⤷ Title: 44,000 IPs Hijacked: cPanel’s 9.8 CVSS Authentication Bypass Triggers Global Ransomware Surge
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 02 May 2026 02:04:53 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Authentication Bypass #CISA KEV #CPanel #CVE_2026_41940 #CVSS 9.8 #cybersecurity #infosec #Mirai botnet #ransomware #Server Security #WebPros #WHM
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 02 May 2026 02:04:53 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Authentication Bypass #CISA KEV #CPanel #CVE_2026_41940 #CVSS 9.8 #cybersecurity #infosec #Mirai botnet #ransomware #Server Security #WebPros #WHM
Daily CyberSecurity
44,000 IPs Hijacked: cPanel’s 9.8 CVSS Authentication Bypass Triggers Global Ransomware Surge
CISA warns of cPanel CVE-2026-41940 (CVSS 9.8). 44,000 IPs compromised via authentication bypass, fueling ransomware and botnets. Patch by May 3rd!
⤷ Title: The CVE Watchtower: Weekly Threat Intelligence Briefing (April 27 – May 3, 2026)
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 04 May 2026 01:57:05 +0000
════════════════════════
⌗ Tags: #Weekly Recap #CISA KEV #CPanel #CVE_2026_41940 #CVSS 10 #cybersecurity #Express.js #infosec #patch management #Vulnerability Digest #WHM
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 04 May 2026 01:57:05 +0000
════════════════════════
⌗ Tags: #Weekly Recap #CISA KEV #CPanel #CVE_2026_41940 #CVSS 10 #cybersecurity #Express.js #infosec #patch management #Vulnerability Digest #WHM
Daily CyberSecurity
The CVE Watchtower: Weekly Threat Intelligence Briefing (April 27 – May 3, 2026)
Weekly Triage: 1,134 new vulnerabilities found, including a 9.8 critical bypass in cPanel/WHM and active Express.js logic flaws. Patch your systems now.
⤷ Title: cPanel RCE & Critical vulnerability in Gemini CLI
════════════════════════
𐀪 Author: Stanislav Klevtsov
════════════════════════
ⴵ Time: Tue, 05 May 2026 14:14:07 GMT
════════════════════════
⌗ Tags: #cpanel #gemini #infosec #ai #cybersecurity
════════════════════════
𐀪 Author: Stanislav Klevtsov
════════════════════════
ⴵ Time: Tue, 05 May 2026 14:14:07 GMT
════════════════════════
⌗ Tags: #cpanel #gemini #infosec #ai #cybersecurity
Medium
cPanel RCE & Critical vulnerability in Gemini CLI
Let’s start with cPanel
⤷ Title: Root Access at Risk: Perl Injection and Symlink Flaws Hit cPanel & WHM
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 11 May 2026 02:00:35 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CPanel #CVE_2026_29202 #CVE_2026_29203 #infosec #Linux Server #Patch Alert #Perl Injection #privilege escalation #Web Hosting Security #WHM #WP Squared
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 11 May 2026 02:00:35 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CPanel #CVE_2026_29202 #CVE_2026_29203 #infosec #Linux Server #Patch Alert #Perl Injection #privilege escalation #Web Hosting Security #WHM #WP Squared
Daily CyberSecurity
Root Access at Risk: Perl Injection and Symlink Flaws Hit cPanel & WHM
Update cPanel immediately! High-severity vulnerabilities (CVSS 8.8) allow Perl injection and privilege escalation. Protect your hosting environment now.
⤷ Title: Critical cPanel Auth Bypass CVE-2026-41940 Exploited by Thousands
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 12 May 2026 12:37:43 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Authentication Bypass #CPanel #CVE_2026_41940 #Cyber Security #Data Breach #infosec #Linux Server #Mr_Rot13 #Patch Alert #WHM #wordpress security #XLab
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 12 May 2026 12:37:43 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Authentication Bypass #CPanel #CVE_2026_41940 #Cyber Security #Data Breach #infosec #Linux Server #Mr_Rot13 #Patch Alert #WHM #wordpress security #XLab
Daily CyberSecurity
Critical cPanel Auth Bypass CVE-2026-41940 Exploited by Thousands
Urgent: cPanel & WHM hit by global 9.8 CVSS auth bypass. Over 2,000 IPs are actively hijacking servers for data theft and ransomware. Patch immediately!
⤷ Title: cPanel & WHM Patch 5 High-Severity Flaws, Including 8.6 Severity File Read and SQLi
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 15 May 2026 02:22:43 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Arbitrary File Read #CPanel #CVE_2026_29205 #CVE_2026_29206 #Cyber Security #infosec #Patch Alert #Server Security #sql injection #WHM #WP Squared
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 15 May 2026 02:22:43 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Arbitrary File Read #CPanel #CVE_2026_29205 #CVE_2026_29206 #Cyber Security #infosec #Patch Alert #Server Security #sql injection #WHM #WP Squared
Daily CyberSecurity
cPanel & WHM Patch 5 High-Severity Flaws, Including 8.6 Severity File Read and SQLi
cPanel & WHM fix 5 critical vulnerabilities (CVE-2026-29205). Fixes for arbitrary file read, SQLi, and privilege escalation are now live. Update now!
⤷ Title: CVSS 10.0 Zero-Day: Active Attacks Exploit LiteSpeed cPanel Plugin for Root Server Access
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 22 May 2026 06:46:02 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Command Execution Safety #cPanel Vulnerability #CVE_2026_48172 #Cyber Security #infosec #LiteSpeed Plugin #privilege escalation #redisAble Exploit #Root Server Access #Web Hosting Security #WHM Patch
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 22 May 2026 06:46:02 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Command Execution Safety #cPanel Vulnerability #CVE_2026_48172 #Cyber Security #infosec #LiteSpeed Plugin #privilege escalation #redisAble Exploit #Root Server Access #Web Hosting Security #WHM Patch
Daily CyberSecurity
CVSS 10.0 Zero-Day: Active Attacks Exploit LiteSpeed cPanel Plugin for Root Server Access
Urgent: Active attacks target the LiteSpeed User-End cPanel Plugin (CVE-2026-48172). Learn how to detect the exploit and secure your server root today.
⤷ Title: Remediation of the Critical Privilege Escalation Flaw in LiteSpeed’s cPanel Extension
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 27 May 2026 04:37:24 +0000
════════════════════════
⌗ Tags: #Vulnerability #cpanel_jsonapi_func=redisAble log grep #CVE_2026_48172 root access #David Strydom security researcher #LiteSpeed cPanel plugin exploit #LiteSpeed WHM Plugin 5.3.1.0 update #lsws.redisAble logic error #remove LiteSpeed cPanel plugin #shared hosting privilege escalation #shared hosting sandbox escape #WebPros ecosystem defense
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 27 May 2026 04:37:24 +0000
════════════════════════
⌗ Tags: #Vulnerability #cpanel_jsonapi_func=redisAble log grep #CVE_2026_48172 root access #David Strydom security researcher #LiteSpeed cPanel plugin exploit #LiteSpeed WHM Plugin 5.3.1.0 update #lsws.redisAble logic error #remove LiteSpeed cPanel plugin #shared hosting privilege escalation #shared hosting sandbox escape #WebPros ecosystem defense
Information Security News
Remediation of the Critical Privilege Escalation Flaw in LiteSpeed’s cPanel Extension
Perimeter Compromise and Systemic Risk LiteSpeed recently resolved a critical privilege escalation vulnerability within its user-facing cPanel plugin. This severe security defect is tracked global…
⤷ Title: LiteSpeed cPanel Privilege Escalation Flaw Exploited in the Wild (CVE-2026-54420)
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Tue, 16 Jun 2026 00:00:13 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Active Exploitation #CageFS #CloudLinux #CPanel #CVE_2026_54420 #LiteSpeed #privilege escalation #Shared Hosting
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Tue, 16 Jun 2026 00:00:13 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Active Exploitation #CageFS #CloudLinux #CPanel #CVE_2026_54420 #LiteSpeed #privilege escalation #Shared Hosting
Daily CyberSecurity
LiteSpeed cPanel Privilege Escalation Flaw Exploited in the Wild (CVE-2026-54420)
CVE-2026-54420, a LiteSpeed cPanel privilege escalation flaw, is exploited in the wild to gain root on shared hosting. Patch to plugin v2.4.8 now.