Related Threat Clusters
-
Critical cPanel Vulnerability Exploited in Southeast Asia Cyber Attacks
A sophisticated cyber campaign has exploited a critical cPanel vulnerability (CVE-2026-41940) to breach government and military servers in Southeast Asia, particularly targeting Indonesia. The attackers utilized a…
3 articles · Updated May 4, 2026 -
Major Cyberattack on Moldova's Healthcare Database Compromises Sensitive Data
A significant cyberattack has targeted Moldova's national healthcare database, resulting in the compromise of approximately 30% of its data, which includes personal and financial information of citizens. The attack,…
2 articles · Updated May 1, 2026 -
cPanel and WHM Critical Auth Bypass Vulnerability Patched
A critical authentication vulnerability affecting all supported versions of cPanel and WHM was disclosed on April 28, 2026. This flaw allows attackers to gain unauthorized access to the control panel, posing significant…
69 articles · Updated April 29, 2026 -
GitHub Actions Exploited to Attack cPanel and WHM Servers
A large-scale cyber campaign has compromised multiple GitHub repositories to deploy malicious workflows targeting cPanel and WHM servers. Attackers are using GitHub Actions to automate the scanning of the internet for…
4 articles · Updated July 23, 2026
Recent Intelligence Reports
- Compromised GitHub repositories weaponized to attack cPanel and WHM servers — Feeds.4Sysops · July 23, 2026
- SEA CPanel — ctrlaltintel.com · May 5, 2026
- Hackers target governments and MSPs via critical cPanel flaw CVE-2026 — Securityaffairs.Co · May 4, 2026
- cPanel/WHM: 4000 instances in Germany already attacked — Heise.De · May 4, 2026
- Hackers Breach Government and Military Servers by Exploiting cPanel Vulnerability — Cybersecuritynews · May 2, 2026
- Rapid Exploitation of cPanel Vulnerability Underscores Demand for Censys Threat Intelligence — Tipranks · May 2, 2026
- The mysterious hack of Moldova's healthcare database — News.Risky.Biz · May 1, 2026
- cPanel 0-Day Authentication Bypass Vulnerability Actively Exploited in the Wild — Cybersecuritynews · April 30, 2026