Close Menu
AI News TodayAI News Today

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Today’s NYT Connections Hints, Answers for May 17 #1071

    Today’s NYT Strands Hints, Answer and Help for May 17 #805

    Phone Batteries Keep Getting Better. So Why Are We Always Charging?

    Facebook X (Twitter) Instagram
    • About Us
    • Contact Us
    Facebook X (Twitter) Instagram Pinterest Vimeo
    AI News TodayAI News Today
    • Home
    • Shop
    • AI News
    • AI Reviews
    • AI Tools
    • AI Tutorials
    • Chatbots
    • Free AI Tools
    AI News TodayAI News Today
    Home»AI News»Hackers are still exploiting the cPanel bug to gain control of thousands of websites
    AI News

    Hackers are still exploiting the cPanel bug to gain control of thousands of websites

    By No Comments2 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    an illustration of a red light cast down on a bunch of computers
    Share
    Facebook Twitter LinkedIn Pinterest Email

    Nearly a week after the makers of the popular web server management software cPanel and WebHost Manager (WHM) alerted users of a critical flaw in its software, hackers are still targeting thousands of websites that use the vulnerable software. 

    As of Monday there are more than 550,000 potentially vulnerable servers running cPanel, a number that has remained stable for days. And there are now around 2,000 cPanel instances likely compromised, down from around 44,000 on Thursday. These statistics are published by Shadowserver, a nonprofit organization that scans and monitors the internet for cyberattacks. 

    On Thursday, security researchers alerted that hackers started compromising servers running cPanel and WHM, taking advantage of a bug that allowed the attackers to take full control of and hijack the vulnerable servers via their control panels. 

    As Bleeping Computer reported, the extent of the damage is visible by the fact that Google has indexed dozens of websites that at some point displayed a message from a group of hackers that claimed to have encrypted the victim’s files in an apparent ransomware attack. Some of those sites now load normally.  

    The ransom note included a chat ID for the victims to contact the hackers, who did not immediately respond to TechCrunch’s request for comment. 

    The U.S. Cybersecurity and Infrastructure Security Agency (CISA) warned on Thursday that the vulnerability — tracked as CVE-2026-41940 — was being exploited in the wild, and added it to its Known Exploited Vulnerabilities (KEV) catalog. CISA asked government agencies to patch by Sunday. CISA did not immediately respond to a request for comment, asking whether it could confirm that government agencies have patched their servers. 

    The attacks against web servers running cPanel and WHM have likely been ongoing since much earlier than the vulnerability was disclosed. According to KnownHost CEO Daniel Pearson, his company detected attacks as far back as February 23.

    Techcrunch event

    San Francisco, CA
    |
    October 13-15, 2026

    Executives at Webpros, the company that develops cPanel and WHM and says it powers 60 million domains, did not respond to a request for comment. 

    When you purchase through links in our articles, we may earn a small commission. This doesn’t affect our editorial independence.

    bug control cPanel exploiting gain hackers thousands websites
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous ArticleF1 in Miami: That's what it looks like when an upgrade works
    Next Article Image AI models now drive app growth, beating chatbot upgrades
    • Website

    Related Posts

    AI News

    Research repository ArXiv will ban authors for a year if they let AI do all the work

    AI News

    OpenAI co-founder Greg Brockman reportedly takes charge of product strategy

    AI News

    Rocket Report: Cowboy up for data centers in LEO; Russia’s new ICBM actually works

    Add A Comment
    Leave A Reply Cancel Reply

    Top Posts

    Today’s NYT Connections Hints, Answers for May 17 #1071

    0 Views

    Today’s NYT Strands Hints, Answer and Help for May 17 #805

    0 Views

    Phone Batteries Keep Getting Better. So Why Are We Always Charging?

    0 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews
    AI Tutorials

    Quantization from the ground up

    AI Tools

    David Sacks is done as AI czar — here’s what he’s doing instead

    AI Reviews

    Judge sides with Anthropic to temporarily block the Pentagon’s ban

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Most Popular

    Today’s NYT Connections Hints, Answers for May 17 #1071

    0 Views

    Today’s NYT Strands Hints, Answer and Help for May 17 #805

    0 Views

    Phone Batteries Keep Getting Better. So Why Are We Always Charging?

    0 Views
    Our Picks

    Quantization from the ground up

    David Sacks is done as AI czar — here’s what he’s doing instead

    Judge sides with Anthropic to temporarily block the Pentagon’s ban

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Facebook X (Twitter) Instagram Pinterest
    • About Us
    • Contact Us
    • Terms & Conditions
    • Privacy Policy
    • Disclaimer

    © 2026 ainewstoday.co. All rights reserved. Designed by DD.

    Type above and press Enter to search. Press Esc to cancel.