Go Back   WarriorForum - Internet Marketing Forums > The Warrior Forum > Main Internet Marketing Discussion Forum
Register Blogs FAQ Social Groups CalendarHelp Desk

Reply
 
LinkBack Thread Tools
Old 08-04-2009, 11:30 AM   #1
Ronin
War Room Member
 
Lawrh's Avatar
 
Join Date: Oct 2008
Location: Near the River
Posts: 268
Thanks: 206
Thanked 225 Times in 169 Posts
Default cPanel vulnerable to nasty attack! Please Read

cPanel, Netgear and Linksys have a security hole which hasn't been patched yet. The full story is here:

cPanel, Netgear and Linksys susceptible to nasty attack ? The Register

Basically, if you are logged into cPanel in one tab and surf to an infected site, that site will see your cPanel and take it over. Obviously you would be screwed. cPanels patch is in QA testing and not yet released. For the time being, always log out of cPanel before you visit any website. In fact there is no reason to leave cPanel logged in at all if you are not using it. Expect the best, plan for the worst.

“Strategy without action is a day-dream; action without strategy is a nightmare.” – Old Japanese proverb -
Lawrh is offline   Reply With Quote
Old 08-04-2009, 12:21 PM   #2
Active Warrior
 
xwishmasterx's Avatar
 
Join Date: Aug 2009
Posts: 58
Thanks: 4
Thanked 5 Times in 4 Posts
Default Re: cPanel vulnerable to nasty attack! Please Read

Thanks for the heads up!

Cpanel recommends:

  • Do not remain logged into any web applications or interfaces while browsing untrusted sites. Always completely log out of browser sessions for sensitive sites when activities have been completed.
  • Avoid opening SPAM, Websites, or clicking on links that you do not
    trust especially URL shortening services found on many social media
    sites.
  • Update your current passwords within cPanel on a regular basis and
    maintain strong password discipline.
Read the whole news post from cpanel here:
News - cPanel Inc.

My Social Network Site: Board of Directors Social Network
A Social Network that pays!
xwishmasterx is offline   Reply With Quote
Old 08-04-2009, 12:26 PM   #3
Warrior Member
 
Join Date: Aug 2009
Location: Tewkesbury, UK
Posts: 12
Thanks: 2
Thanked 0 Times in 0 Posts
Default Re: cPanel vulnerable to nasty attack! Please Read

Hi,

Thanks for information.

Rudolf
Rudolf Bodocsi is offline   Reply With Quote
Old 08-04-2009, 04:59 PM   #4
Yours Truly
War Room Member
 
Punkaj Dube's Avatar
 
Join Date: Oct 2008
Posts: 128
Thanks: 6
Thanked 3 Times in 3 Posts
Social Networking View Member's Twitter Profile 
Contact Info
Send a message via Skype™ to Punkaj Dube
Default Re: cPanel vulnerable to nasty attack! Please Read

I am a big fan of cPanel and this is really news for me. Thanks for the info.
Punkaj Dube is offline   Reply With Quote
Old 08-04-2009, 05:29 PM   #5
JWB
HyperActive Warrior
 
Join Date: Oct 2008
Location: Circle Pines, MN
Posts: 132
Thanks: 0
Thanked 5 Times in 5 Posts
Default Re: cPanel vulnerable to nasty attack! Please Read

Thanks for the info...

I use Hostgator and they seem to pretty secure...

JWB is offline   Reply With Quote
Old 08-04-2009, 05:32 PM   #6
HyperActive Warrior
War Room Member
 
StephenDavies's Avatar
 
Join Date: Jul 2009
Location: Shropshire, UK
Posts: 143
Thanks: 60
Thanked 15 Times in 11 Posts
Default Re: cPanel vulnerable to nasty attack! Please Read

Thanks very much for bringing this to my attention. I have just switched to a hosting company that is using cPanel, my last one had their own front end, so this is all new to me.

StephenDavies is offline   Reply With Quote
Old 08-05-2009, 05:54 AM   #7
Gatchaman fan
War Room Member
 
TheNightOwl's Avatar
 
Join Date: Sep 2008
Posts: 546
Blog Entries: 1
Thanks: 225
Thanked 103 Times in 66 Posts
Default Re: cPanel vulnerable to nasty attack! Please Read

I'm pretty sure that in your Settings in cPanel you can select to only allow one user to be logged in at any one time.

This may not prevent an attack due to the vulnerability mentioned above (or maybe it would; I don't know!), but it's worth doing anyway. At least then you know that if you're logged on, someone else shouldn't also allowed to be logged on at the same time.

I don't know if this helps. Teeeeeecccchhhhhhs!

TheNightOwl

Membership Sites: Where the real money's at.
Fancy getting your slice of the pie? Click here.

TheNightOwl is offline   Reply With Quote
Reply

  WarriorForum - Internet Marketing Forums > The Warrior Forum > Main Internet Marketing Discussion Forum

Tags
cpanel, read, vulnerability

Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off



All times are GMT -6. The time now is 02:54 PM.