Community Forums
Connect with us on LinkedIn
+ Reply to Thread
Results 1 to 3 of 3
  1. #1
    Member
    Join Date
    Jun 2003
    Posts
    67

    Default Server hacked from CPanel - after backup function

    Today my server was hacked by some users accessed it from Cpanel only.
    They even did not accessed from SSH - thay only got access to root WHM and deleted all accounts.

    I have checked CPanel logs, they triied to find all CPanel security holes and finally they found some way by uploading some invalid backup file from another account on another server.

    My server run Linux Fedora Core 2 last kernel, and CPanel R-143

    I think all Cpanel users must know about this problem!

    Also Cpanel must add some security layer like email on every root login to CPanel and store all unsuccessfull CPanel logins and lock CPanel account after few failed logins from Cpanel menu.

  2. #2
    Member casey's Avatar
    Join Date
    Jan 2003
    Location
    If there is trouble, it will find me
    Posts
    2,336

    Default

    Please send an e-mail to cpanel about this. If this is an actual security hole, they need to be notified of it immediately. They may or may not see this post, and there's no guarantee when they'll see it if they do.

  3. #3
    Member
    Join Date
    Oct 2002
    Posts
    751

    Default

    Even if it's not a security hole I think it's time for CPanel to add some security measures to make it less interesting for hackers to try to gain access through unmonitored CPanel/WHM ports.

    3 options I would be interested in are:
    -Access to WHM based on IP
    -Send e-mail with every WHM root log-in attempt and block ip after 3 failed log-ins.
    -Block ip address after a defined number of failed CPanel log-ins.

Similar Threads & Tags
Similar threads

  1. Server Hacked :( Script to replace index file from backup
    By crazyaboutlinux in forum cPanel and WHM Discussions
    Replies: 5
    Last Post: 05-05-2011, 03:47 PM
  2. Backup Datestamp display in WHM backup function?
    By Snowman30 in forum cPanel and WHM Discussions
    Replies: 1
    Last Post: 02-10-2009, 05:04 AM
  3. stelaartois.ru - cpanel server hacked ?
    By forlinuxsupport in forum Security
    Replies: 26
    Last Post: 06-23-2008, 02:17 PM
  4. stelaartois.ru - cpanel server hacked ?
    By forlinuxsupport in forum cPanel and WHM Discussions
    Replies: 26
    Last Post: 06-23-2008, 02:17 PM
  5. Server was hacked via cPanel demo...
    By WreckRman2 in forum cPanel and WHM Discussions
    Replies: 7
    Last Post: 01-09-2004, 05:09 AM
Linkedin       Facebook       Twitter       RSS       Flickr       YouTube