The post Cloudflare Releases New Warp VPN appeared first on Plesk.
Posts Tagged security
Well known UK bank vulnerable to impersonation for five years
Netcraft has found that Halifax has been left vulnerable to convincing impersonation attacks for five years. The operator of a website promoting Spanish hotels is able to send and receive emails on the official Halifax online banking domain, and get legitimate security certificates issued for the same domain.
Your Automatic Server Update to Plesk 17.8
The post Your Automatic Server Update to Plesk 17.8 appeared first on Plesk.
“Cybersecurity is changing; We need new protection strategies” – Say CloudLinux (Imunify360)
The post “Cybersecurity is changing; We need new protection strategies” – Say CloudLinux (Imunify360) appeared first on Plesk.
Fake EV certificates used in Steam trade phishing attacks
An extremely convincing phishing attack that impersonates a multi-game skin trade bot appears to be using a fake Extended Validation TLS certificate to steal Steam accounts. The ongoing phishing attack impersonates TradeIt.gg, which facilitates the trading of skins, weapons and other in-game commodities within popular games like CS:GO, TF2 and DOTA. When a victim attempts […]
Manufacturing.gov and White House security suffer under U.S. shutdown
Dozens more U.S. government websites have become inaccessible since last week, when Netcraft highlighted the impact of security certificates expiring during the federal shutdown. As of today, more than 130 TLS certificates used by U.S. government websites have expired without being renewed. Some of these sites are now completely inaccessible in modern browsers due to […]
.gov security falters during U.S. shutdown
Dozens of U.S. government websites have been rendered either insecure or inaccessible during the ongoing U.S. federal shutdown. These sites include sensitive government payment portals and remote access services, affecting the likes of NASA, the U.S. Department of Justice, and the Court of Appeals. With around 400,000 federal employees currently furloughed, more than 80 TLS […]
WordPress 5.0.1 is now available. This is a security release for all versions since WordPress 3.7. We strongly encourage you to update your sites immediately. Plugin authors are encouraged to read the 5.0.1 developer notes for information on backwards-compatibility. WordPress versions 5.0 and earlier are affected by the following bugs, which are fixed in version […]
What can go wrong without the best web hosting platform? [Infographic]
The post What can go wrong without the best web hosting platform? [Infographic] appeared first on Plesk.
Plesk partner Sucuri saves Val from hacking ordeal #WCSEA
Valentin Vesa’s charity website was constantly attacked by hackers, despite all his efforts. Until Sucuri stepped in. Carole Olinger tells his story, as told by Val himself at WCSEA.
The post Plesk partner Sucuri saves Val from hacking ordeal #WCSEA appeared first on Plesk.
Lukas Hertig, SVP Biz Dev, talks Plesk, Digicert, security and market changes [Video]
Find out what attracted customers and partners like DigiCert to Plesk, why we’re big on security, and how we responded to market changes along the years.
The post Lukas Hertig, SVP Biz Dev, talks Plesk, Digicert, security and market changes [Video] appeared first on Plesk.
How to Protect Your Websites with Plesk Security Extensions
The post How to Protect Your Websites with Plesk Security Extensions appeared first on Plesk.
Increase hosting revenue by offering complementary security services
The post Increase hosting revenue by offering complementary security services appeared first on Plesk.
Top Hacking Groups impacting Cybersecurity today
Summer starts with burning web hosting news. Because we’re hearing about acquisitions, expansions, next-gen solutions and new creations.
The post Top Hacking Groups impacting Cybersecurity today appeared first on Plesk.
Best Plesk Takeaways from my first WCEU – Plesk Stories
The post Best Plesk Takeaways from my first WCEU – Plesk Stories appeared first on Plesk.
New Plesk Extensions on the Loose: May Edition
The post New Plesk Extensions on the Loose: May Edition appeared first on Plesk.
Hidden Website Threats: How to deal with Site Malware
Greg Zemslov, Guest Author from our Plesk partner Revisium talks about the websites threats that we don’t see, like site malware, and how to get rid of it.
The post Hidden Website Threats: How to deal with Site Malware appeared first on Plesk.
The hidden “well-known” phishing sites
Thousands of phishing sites have been finding homes in special hidden directories on compromised web servers. In the past month alone, over 400 new phishing sites were found hosted within directories named /.well-known/; but rather than being created by fraudsters, these special directories are already present on millions of websites. The /.well-known/ directory acts as […]
Brazilian government providing warm waters for shoals of phish
Security holes in Brazilian government websites are still rife, with no fewer than eight different gov.br sites being compromised within the past week to host phishing attacks and hacking scripts. The situation does not seem to have improved much since two years ago, when we noticed a similar spate of phishing sites and malware hosted […]
WordPress 4.9.2 Security and Maintenance Release
WordPress 4.9.2 is now available. This is a security and maintenance release for all versions since WordPress 3.7. We strongly encourage you to update your sites immediately. An XSS vulnerability was discovered in the Flash fallback files in MediaElement, a library that is included with WordPress. Because the Flash files are no longer needed for […]
Case 109049 Summary Arbitrary file overwrite in /scripts/synccpaddonswithsqlhost. Security Rating cPanel has assigned a Security Level of Important to this vulnerability. Description The synccpaddonswithsqlhost script performed unsafe file operations inside the home directories of unprivileged users while running with root’s permissions. By manipulating symbolic links within the .cpaddons sub-directory, a …
Red Hat: 2014:1655-01: libxml2: Moderate Advisory
(Oct 16) Updated libxml2 packages that fix one security issue are now available for Red Hat Enterprise Linux 6 and 7. Red Hat Product Security has rated this update as having Moderate security [More…]
Red Hat: 2014:1654-01: rsyslog7: Important Advisory
(Oct 16) Updated rsyslog7 packages that fix one security issue are now available for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having Important security [More…]
Red Hat: 2014:1657-01: java-1.7.0-oracle: Critical Advisory
(Oct 16) Updated java-1.7.0-oracle packages that fix several security issues are now available for Oracle Java for Red Hat Enterprise Linux 5, 6, and 7. Red Hat Product Security has rated this update as having Critical security [More…]
97% of SSL web servers are likely to be vulnerable to POODLE, a vulnerability that can be exploited in version 3 of the SSL protocol. POODLE, in common with BEAST, allows a man-in-the-middle attacker to extract secrets from SSL sessions by forcing the victim’s browser into making many thousands of similar requests. As a result […]
Red Hat: 2014:1359-01: polkit-qt: Important Advisory
(Oct 6) Updated polkit-qt packages that fix one security issue are now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having Important security [More…]
Red Hat: 2014:1352-01: libvirt: Moderate Advisory
(Oct 1) Updated libvirt packages that fix two security issues and one bug are now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having Moderate security [More…]
cPanel & WHM software version 11.40 will reach End of Life at the end of October 2014. In accordance with our EOL policy [http://go.cpanel.net/longtermsupport], 11.40 will continue functioning on servers after reaching EOL. However, no further updates, such as security fixes and installations, will be provided for 11.40 once it …
cPanel Security Team: Bash CVE-2014-6217 and CVE-2014-7169
Bash CVE-2014-6217 and CVE-2014-7169 CVE-2014-6217 is a critical vulnerability in all versions of GNU Bash, the Bourne Again Shell.This vulnerability allows an attacker to execute arbitrary shell commands any time a Bash shell executes with environmental variables supplied by the attacker. On cPanel & WHM systems, there are numerous entry …
Red Hat: 2014:1365-01: kernel: Important Advisory
(Oct 7) Updated kernel packages that fix one security issue and several bugs are now available for Red Hat Enterprise Linux 6.4 Extended Update Support. Red Hat Product Security has rated this update as having Important security [More…]