The security services provider, Digital Defense recently revealed information about a 2FA vulnerability in ‘cPanel & WHM’, a website hosting platform. For your information, WHM stands for WebHost Manager, the tool that web hosting service providers offer to clients. WHM is behind more than 70 million website domain names, and it is used to offer control over virtual private servers or dedicated servers. The said vulnerability enabled exposing 2FA to an exhaustive search attack. The provider of security solutions managed to show that it only took a couple of minutes for an effective cyberattack to happen. The attack comes with a caveat, though. The cyberattacker would have to either know valid credentials or should have the right to use these. This would reduce their attack surface scope to insider attacks or stolen website credentials. That means over 70 million groups of credentials (granted that there is one for each domain). That also means website hosting providers ...
HostSailor provides affordable hosting services including shared SSD hosting, dedicated servers, as well as related services such as SSL certificates and domain registration.