CAT | Cpanel | WHM Security Tips
26
ConfigServer Firewall Bug
No comments · Posted by Greek-Chat.gr in Cpanel | WHM Security Tips
We would strongly recommend that you subscribe to the blog via RSS to ensure you remain informed about any updates to cxs. If you also have the csf firewall installed on your server, you should also upgrade immediately to the latest version of that application which was also found to have a security vulnerability. This […]
ConfigServer · cpanel · Firewall · security
26
ConfigServer eXploit Scanner Bug
No comments · Posted by Greek-Chat.gr in Cpanel | WHM Security Tips
Dear ConfigServer eXploit Scanner Customer, Due to exceptional circumstances we have taken the decision to email all customers of our cxs application. We will only take this step in such circumstances and would not normally send emails to our customers. We have recently discovered several security vulnerabilities in the cxs quarantine procedure and would like […]
ConfigServer · cpanel · eXploit · Scanner · security
13
Upgrading or Downgrading MySQL
No comments · Posted by Greek-Chat.gr in Cpanel | WHM Security Tips
You can easily change the major version of MySQL running on your server, keeping in mind that the actual version will be dependent on what cPanel has released in their repository. You may notice that in WHM > Tweak Settings, where MySQL upgrades and downgrades are usually done, you can no longer downgrade to versions […]
No tags
13
Fixing a Suddenly “Broken” cPanel Installation
No comments · Posted by Greek-Chat.gr in Cpanel | WHM Security Tips
Sometimes out of nowhere cPanel will just break. You don’t know why, you don’t know when, and you don’t know how…it just happens. In my experience it’s usually when a cPanel update fails for some reason or perl is borked, but either way – it just sucks. This article will go over how to fix […]
No tags
13
Adding Services to Chksrvd for Monitoring
No comments · Posted by Greek-Chat.gr in Cpanel | WHM Security Tips
Chkservd is the service in cPanel that checks to make sure that services are running, then restarts them if necessary. It’s also responsible for the ‘Service Manager’ section in cPanel, which is also an interface where added services can be easily checked on and off.
No tags
13
Manually Update cPanel/WHM
No comments · Posted by Greek-Chat.gr in Cpanel | WHM Security Tips
cPanel/WHM should upgrade itself automatically every once in a while; however, if you want to do this manually then just follow these steps: 1) Login to your VPS or Dedicated Server as root using SSH 2) Run the command: /scripts/upcp -force 3) Restart cPanel: /etc/init.d/cpanel restart The actual upgrade may take a while, so you […]
It is important to make sure that you are running the latest stable versions of the software on your system to ensure that it has been patched of any security issues that past versions may be susceptible to. Make sure to keep on top of updates for: Kernel cPanel and WHM* User Applications (bulletin boards, […]
No tags
Installing a firewall to limit access to your server is useful. Removing all unused software on your system is more useful. Before you have the chance to remove all unused services and daemons, or the chance to figure out which services / daemons are unused, you can enable a firewall to prevent unwanted access. The […]
No tags
11
Turn off unused services and daemons
No comments · Posted by Greek-Chat.gr in Cpanel | WHM Security Tips
Any service or daemon that allows a connection to be established to your server is away for hackers to gain access. To reduce security risks, you should disable all services and daemons that are not being used. For Daemons on Linux: Check /etc/xinetd.conf for services you are not using. For example, cupsd (printing daemon) and […]
No tags
10
Lock down your system’s compilers
No comments · Posted by Greek-Chat.gr in Cpanel | WHM Security Tips
Most users do not require the use of C and C++ compilers. You can use the Compilers Tweak within Tweak Security in WebHost Manager to turn off use of the compilers for all unprivileged users, or to disable them for specific users only. Many pre-packaged exploits require working compilers. Disabling compilers will help protect against […]
No tags