joanca

24.2K posts

joanca

joanca

@acsacsar

anarchist | software | [email protected]

Katılım Ekim 2009
561 Takip Edilen283 Takipçiler
joanca retweetledi
Old Internet
Old Internet@OldInternetFeel·
Old Internet tweet media
ZXX
39
804
6.8K
117.8K
joanca retweetledi
International Cyber Digest
International Cyber Digest@IntCyberDigest·
🚨 BREAKING: cPanel and WHM, the control panels behind an estimated 70+ million websites, have a critical security flaw that lets anyone become root admin without a password. CVE-2026-41940 affects every supported version. It’s already being exploited in the wild. watchTowr Labs published the full attack today, after the hosting company KnownHost confirmed the bug was already being used to break into a significant chunk of the internet. If you've never heard of cPanel: it's the dashboard that hosting providers and millions of website owners use to manage their servers, domains, email accounts, databases, and SSL certificates. WHM is the admin version that controls the entire server. If someone gets root access to WHM, they get the keys to the kingdom and to every apartment inside it. How the attack works, in plain English: 🔴 Step 1: The attacker sends a deliberately wrong login. cPanel still creates a temporary "you tried to log in" record on disk and gives the attacker a cookie tied to it. 🔴 Step 2: The attacker tweaks the cookie to disable cPanel's password encryption. Normally cPanel encrypts the password field on disk. With one small change to the cookie, cPanel just stores it as plain text instead. 🔴 Step 3: The attacker sends a fake login attempt where the password field secretly contains hidden line breaks. cPanel does not strip these line breaks out, so they get written straight to the session file. Each line break creates a brand new fake record. The attacker uses this to inject lines that say "this user is root" and "this user already authenticated successfully." 🔴 Step 4: The attacker visits one more random page on the site to nudge cPanel into re-reading the file. cPanel then promotes the injected fake lines into its main session memory. 🔴 Step 5: On the next request, cPanel sees a flag that says "this user already passed the password check." cPanel trusts that flag, skips checking the actual password, and lets the attacker in as root. From start to finish, the attack takes a handful of HTTP requests. If you run cPanel or WHM, the patched versions are: 🔴 cPanel/WHM 110.0.x → 11.110.0.97 🔴 cPanel/WHM 118.0.x → 11.118.0.63 🔴 cPanel/WHM 126.0.x → 11.126.0.54 🔴 cPanel/WHM 132.0.x → 11.132.0.29 🔴 cPanel/WHM 134.0.x → 11.134.0.20 🔴 cPanel/WHM 136.0.x → 11.136.0.5 If your version is older than these, assume someone has already broken in and act accordingly. Patch right now, then rotate every password and key the server touched: root passwords, API tokens, SSL private keys, SSH keys, mail passwords, and database passwords.
International Cyber Digest tweet mediaInternational Cyber Digest tweet media
English
105
788
3.9K
557.4K
joanca retweetledi
Juan Carlos Campos
Juan Carlos Campos@tv_juancarlos·
Impresionante la multitud en el zócalo de Ciudad de México viendo a 31 Minutos en vivo. Las autoridades calculan que se superó las 100 mil personas
Español
66
1.1K
7.8K
302.7K
joanca
joanca@acsacsar·
el pa se nos fue, me tomo un vinito por él
Español
0
0
1
12
joanca retweetledi
Blondie Club
Blondie Club@blondieclub·
Ni cultura. Ni deporte. No al Rodeo.
Español
15
1.5K
5.1K
47.5K
joanca retweetledi
Marta Lagos
Marta Lagos@mmlagoscc·
En 35 años desde la recuperación de la democracia, nunca un gobierno había tomado una medida que castigara de manera tan directa e inmediata a todos los chilenos.
Español
248
1.5K
4.9K
57.4K
joanca retweetledi
International Cyber Digest
International Cyber Digest@IntCyberDigest·
🚨‼️ BREAKING: Crunchyroll breached through outsourcing partner in India. A threat actor exfiltrated data from Crunchyroll's ticketing system and also managed to pull 100 GB of personally identifiable customer analytics data. We've analyzed sample data and it includes IP addresses, email addresses, credit card details, and more. An employee of their outsourcing partner Telus had executed malware on his system, which gave a threat actor access to Crunchyroll's environment.
International Cyber Digest tweet mediaInternational Cyber Digest tweet media
English
494
2.1K
11.6K
5.5M
__
__@JavierxcespdsP·
@acsacsar sí weon, ya no puedo ni dormir de corrido porque me dan ganas de ir al baño.
Español
1
0
0
45
joanca retweetledi
René Naranjo Sotomayor
René Naranjo Sotomayor@renenaranjo·
No se está hablando lo suficiente de la vibrante participación de Camila Gallardo anoche, cantando “Si somos americanos”, del gran Rolando Alarcón #Viña2026
Español
87
285
2K
73.4K
joanca
joanca@acsacsar·
fuerza chilito
Español
0
0
0
24
__
__@JavierxcespdsP·
Llevo al menos 3 elecciones donde pierden absolutamente todos los candidatos por los que voto jaja
Español
1
0
0
35
joanca retweetledi
Gabriel Boric Font
Gabriel Boric Font@GabrielBoric·
Ctm... verguenza ajena y piedad.
Español
224
10.1K
17.1K
0