Ransomware hits web hosting servers via vulnerable CyberPanel instances

A threat actor – or possibly several – has hit approximately 22,000 vulnerable instances of CyberPanel and encrypted files on the servers running it with the PSAUX and other ransomware. The PSAUX ransom note (Source: LeakIX) The CyberPanel … Continue reading Ransomware hits web hosting servers via vulnerable CyberPanel instances

How do free website providers prevent fake payment pages being created on their (sub)domain?

Many providers of free websites allow the creation of subdomains.
What measures can these providers take to prevent (or mitigate) the following:

create a page demanding payment (with a link to an external payment gateway)
host it on a sub… Continue reading How do free website providers prevent fake payment pages being created on their (sub)domain?

Censys Reveals Open Directories Share More Than 2,000 TB of Unprotected Data

These open directories could leak sensitive data, intellectual property or technical data and let an attacker compromise the entire system. Follow these security best practices for open directories. Continue reading Censys Reveals Open Directories Share More Than 2,000 TB of Unprotected Data

Cloud hosting firms hit by devastating ransomware attack

Danish cloud hosting firms CloudNordic and Azero – both owned by Certiqa Holding – have suffered a ransomware attack that resulted in most customer data being stolen and systems and servers rendered inaccessible. The CloudNordic and Azero r… Continue reading Cloud hosting firms hit by devastating ransomware attack