Not that I believe most things that are posted at TheRegister.co.uk, there's a rumor of a security issue in WHM/Cpanel.
http://www.theregister.co.uk/2009/08..._trinity_csrf/
Any official word on this from Cpanel?
Not that I believe most things that are posted at TheRegister.co.uk, there's a rumor of a security issue in WHM/Cpanel.
http://www.theregister.co.uk/2009/08..._trinity_csrf/
Any official word on this from Cpanel?
Yes. An announcement concerning this is located here.
cPanel Security Update: CSRF (cross-site request forgery) - cPanel Inc.
Any cpanel security advisory/announcement mailing list that one can subscribe to stay informed?
This is the root page for that security blog. Security - cPanel Inc. where you'll find a block on the left to sign up for the News List.![]()
@Infopro:
I don't see the recent posts on Security - cPanel Inc. in the news mailing list archive: News Private Archives Authentication.
I think the block on the left on the Security - cPanel Inc. page doesn't subscribe for the same list. We need a mailing list or an RSS feed with cpanel's security advisories as posted on Security - cPanel Inc..
thanks upfront.
teh we appreciate the feedback.
Over the next few weeks we will be working on a re-org of the forums that will include a thread specifically about important information that will be provided solely by cPanel directly. You will be able to subscribe and RSS feed from this thread once it is online.
In the meantime your welcome to browse News - cPanel Inc. for updates from cPanel at this time.
Thanks again,
Mario Rodriguez
cPanel.net
Strategic Partner Manager
mario@cPanel.net
415-894-5882 / aim: cpanelmario
Odd....I'm on the "cPanel news" mailing list (I still have the confirmation email:
"Mailing list subscription confirmation notice for mailing list News").
I receive monthly reminders that I'm on the list...including the news that 11.25 is now available, and yet I haven't received any security notices.
cPanel really should offer RSS, rather than just email subscriptions.
cPanel: Latest Release Version [11.30.*]
PHP 5.3.8, Apache 2.2.21, MySQL 5.1.54, Perl 5.8.8, CentOS 4.9