A severe, global zero-day vulnerability in Java logging library Apache Log4j was found to allow unauthenticated remote code execution and access to servers, allowing attackers to take control of the affected system.
Who is impacted?
A cPanel plugin contains the critically vulnerable log4j library affected by what is being called a catastrophic vulnerability.
Many, many other services are vulnerable to this exploit. Cloud services like Steam, Apple iCloud, and apps like Minecraft were found to be vulnerable.
The United States Department of Homeland Security and government Cybersecurity and Infrastructure Security Agency (CISA) urged all organisations to urgently take action.
HOSTAFRICA's response:
Our expert sysadmins checked and patched internal and managed services as soon as the CVE was released, meaning they are not vulnerable to this exploit thanks to our fast action.
Our managed services:
Managed cPanel servers, and Dedicated servers with paid management.
Web hosting services are actively managed too: cPanel, Reseller Hosting, Lite Speed hosting, WordPress & CMS Hosting.
Clients who want server management, please contact us or view our Managed cPanel server plans.
Monday, December 13, 2021