View Single Post
Old 03-28-2012, 09:46 AM  
chaze
Confirmed User
 
chaze's Avatar
 
Industry Role:
Join Date: Aug 2002
Posts: 9,765
Quote:
Originally Posted by raymor View Post
That's our 9-5, so yeah. We've been doing this for 15 years, so I'd guess maybe 180 CPanel servers.



I guess you didn't read the first few words of the post you quoted and replied to:


I've sent them patches as well as systems design suggestions. If you'd like to know about them, read the CVEs.





Translation - if one guy is asleep or anything happens to him, we're fucked and so are our customers.



Look at the clock. It's time to stop writing and start reading. here's a good place to start:
http://www.securityfocus.com

I know your natural tendency is to want to argue with me. Stop. Look at the names on those CVEs at securityfocus and elsewhere. For example, here's a flaw I discovered that would let me take down wikipedia and thousands of other sites with just a couple of clicks:
http://www.securityfocus.com/bid/51355

You'll see on the CVEs the flaws were discovered by "Ray Morris". That's "raymor", me. You are in the presence of professionals - the people who find and fix security flaws all day, everyday. Right now it's time to shut up, listen, and learn. Next year, when you're answering a newbie's simple question, it will be time for you to talk.
I'm not arguing I hope we can learn from each other. I appreciate the links. But really my question is how where these cpanel servers hacked?

Where here to help right? Then lets find a solution to these cpanel servers you have so many issues with. I have worked with hundreds probably around a thousand for over 14 years and never had a cpanel based service hacked. I would love to help you secure them better. There is lot's of little tricks and plugins that can help as well.

DDOS cannot be stopped as we know from 4chan and anonymous, they're are ways to detour it somewhat though. A DDOS is not a hack or a crack actually is what we are talking about.

I have had those happen though, they really suck

Luckily we have pretty solid DDOS protection at the router level now. This seems to work better then on the server.

Not nitpicking but this is a fedora flaw not cpanel right that you pointed out?
__________________
Welcome to the future of the past
$20/yr Website Builder $95/mo Managed Servers
https://adult-website-hosting.com/ Since 2001

Last edited by chaze; 03-28-2012 at 09:53 AM..
chaze is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote