People are still using cpanel?
Most shared hosting plans use cpanel. It's still widely used yes for a lot of smaller websites.
CPanel's Black Week: 3 New Vulnerabilities Patched After Attack on 44k Servers
21–30 of 83 posts
Re: CPanel's Black Week: 3 New Vulnerabilities Patched After Attack on 44k Servers
#22Earlier quoted context omitted.
I mostly disagree on your disagreement unless the entire project was based on top security practices and good code in the first place. The vast majority of these web panels are a security nightmare.
These PHP systems be it cPanel, wordpress or PHP itself are most likely the biggest target besides windows. It's incredibly uncool stack especially here but it is running most of the "independent" small web. They cannot be that bad if they are managing to be ductape of the internet.
Re: CPanel's Black Week: 3 New Vulnerabilities Patched After Attack on 44k Servers
#23Re: CPanel's Black Week: 3 New Vulnerabilities Patched After Attack on 44k Servers
#24Earlier quoted context omitted.
Half of the entire internet is Meta properties.
That’s the other half. Coincidentally also PHP.
Re: CPanel's Black Week: 3 New Vulnerabilities Patched After Attack on 44k Servers
#25Earlier quoted context omitted.
These PHP systems be it cPanel, wordpress or PHP itself are most likely the biggest target besides windows. It's incredibly uncool stack especially here but it is running most of the "independent" small web. They cannot be that bad if they are managing to be ductape of the internet.
How does that follow?
Re: CPanel's Black Week: 3 New Vulnerabilities Patched After Attack on 44k Servers
#26Ages ago I used php-nuke to manage my forum and it got hacked and I thought it would get taken seriously Seeing these CPanel hacks remind me how old these codebases are and how much more vulnerability remain
[flagged]
Re: CPanel's Black Week: 3 New Vulnerabilities Patched After Attack on 44k Servers
#27Earlier quoted context omitted.
I mostly disagree on your disagreement unless the entire project was based on top security practices and good code in the first place. The vast majority of these web panels are a security nightmare.
These PHP systems be it cPanel, wordpress or PHP itself are most likely the biggest target besides windows. It's incredibly uncool stack especially here but it is running most of the "independent" small web. They cannot be that bad if they are managing to be ductape of the internet.
On the other hand, for my Linux servers, I had to do that twice in the last month with CopyFail and DirtyFrag.
Re: CPanel's Black Week: 3 New Vulnerabilities Patched After Attack on 44k Servers
#28Earlier quoted context omitted.
That’s the other half. Coincidentally also PHP.
Facebook started out PHP; but they ship-of-theseus'ed it into Hack by replacing the standard library, the language, and the runtime engine, so now it's a totally different thing with only a few superficial similarities (FWIW IMO Hack is much better than PHP, I'm sad that it never gained traction...)