Thursday, 24 Sep 2026
Subscribe to AIWatcher
AIWatcher
  • Home
  • News

    OpenAI slots two cheaper GPT-6 models beneath Astra

    By
    AIWadmin

    Researcher hijacks Meta’s Muse agent through a hidden setting

    By
    AIWadmin

    ChatGPT learns to take voice orders for office chores

    By
    AIWadmin

    YouTube hands creators an AI agent for titles and thumbnails

    By
    AIWadmin

    Listeners can now rewrite the Spotify algorithm in plain words

    By
    AIWadmin

    Anthropic’s Claude agents flag a new enzyme family in viral DNA

    By
    AIWadmin
  • Articles

    Data shop Snorkel AI banks $350M as labs stockpile training sets

    By
    AIWadmin

    Ema banks $77M to push AI employees into the back office

    By
    AIWadmin

    US military command randomises routes to outfox enemy models

    By
    AIWadmin

    Kyutai teaches a speech model to do arithmetic out loud

    By
    AIWadmin

    Nokia hands developers a no-training route to calibrated answers

    By
    AIWadmin

    An open model sorts eight overlapping speakers in real time

    By
    AIWadmin
  • Spotlight

    DeepMind keeps cloud memory encrypted behind device-held keys

    By
    AIWadmin

    Anthropic trims Opus costs and speeds output in a mid-cycle refresh

    By
    AIWadmin

    Cisco Talos builds a fingerprint library for AI-driven malware

    By
    AIWadmin

    Google parks idle agents in a new open source runtime

    By
    AIWadmin

    OpenAI gives mathematicians a voice but hands them no brake

    By
    AIWadmin

    NVIDIA teaches its robotics stack to take instructions from agents

    By
    AIWadmin
  • About
    • Mission
    • Services
    • Contact
  • Newsletter
  • Shop
    • All Items
    • By Category
      • Hats
      • T-Shirts
    • Cart
  • 🔥
  • Alignment
  • Classification
  • Distillation
  • Explainability
  • Hallucination
  • Legal/Compliance
  • Medical
  • NLM
  • Mobility
  • Research
  • Robotics
  • Safety
  • Startups
  • Prompt
  • Python
  • RAG
  • RLHF
  • Token
  • Vision
Font ResizerAa
AIWatcherAIWatcher
  • Home
  • News
  • Articles
  • Spotlight
  • About
  • Newsletter
  • Shop
Search
  • Home
  • News
  • Articles
  • Spotlight
  • About
    • Mission
    • Services
    • Contact
  • Newsletter
  • Shop
    • All Items
    • By Category
    • Cart
Have an existing account? Sign In
Follow US
© 2022 Foxiz News Network. Ruby Design Company. All Rights Reserved.
News

cPanel Zero Day Under Active Attack Exposes Millions of Websites

AIWadmin
Last updated: May 17, 2026 9:39 am
AIWadmin
ByAIWadmin
Global AI news & information.
Follow:
Share
SHARE

Critical Authentication Bypass in cPanel Under Active Exploitation

A newly disclosed vulnerability in cPanel and WebHost Manager (WHM), tracked as CVE-2026-41940 (cve.org), is being actively exploited by hackers to take full control of web servers. The bug allows remote attackers to bypass the login screen and gain unrestricted access to the administrative panel, which manages websites, emails, databases, and core server configurations. Given that cPanel is used by tens of millions of websites globally, the threat surface is enormous. Security researchers warn that the exploit is trivial to execute and gives attackers deep server level access, making it a goldmine for data theft, malware deployment, and ransomware campaigns.

Contents
Critical Authentication Bypass in cPanel Under Active ExploitationWeb Hosts Scramble to Patch as Evidence of Prior Attacks Emerges

Web Hosts Scramble to Patch as Evidence of Prior Attacks Emerges

Major web hosting companies including Namecheap and HostGator have already blocked access to customer panels and deployed patches to prevent exploitation. However, KnownHost’s CEO revealed on Reddit that attackers may have been probing the vulnerability as early as February 23, nearly two months before public disclosure. While KnownHost found no signs of active compromise, the timeline suggests that sophisticated threat actors likely had a head start. Canada’s national cybersecurity agency has labeled exploitation “highly probable” and urged immediate patching. The pattern is all too familiar: a critical flaw in ubiquitous infrastructure, delayed response, and the predictable chorus of hosting companies racing to catch up. With hundreds of thousands of unpatched servers still exposed, this is a ticking time bomb for the web hosting ecosystem.

Source: Techcrunch

TAGGED:authentication bypasscPanelCVE-2026-41940securityweb hostingzero-day
Share This Article
Email Copy Link Print
ByAIWadmin
Follow:
Global AI news & information.
Previous Article Musk admits under oath that xAI secretly siphoned OpenAI models to build Grok
Next Article Uber’s Sneaky Plan to Turn Every Driver into an AV Data Slave

You Might Also Like

News

Released OpenAI pact papers show a disputed no-refusal clause

By
AIWadmin
News

AWS open-sources an agent-run control plane for HyperPod clusters

By
AIWadmin
News

Mira Murati’s Thinking Machines Lab debuts first open model

By
AIWadmin
News

ChatGPT ads land in five new markets as OpenAI widens the pilot

By
AIWadmin
AIWatcher
Facebook Twitter Youtube Linkedin Rss

Global AI News and Information
AIWatcher is your definitive source for AI updates worldwide, from Silicon Valley to Shanghai.
Our industry coverage keeps you in the loop with the latest news and trends shaping the future of AI.

Quick Links
  • News
  • Articles
  • Spotlight
  • Events
About Us
  • Mission
  • Services
  • Contact
  • Privacy Policy
  • Legal
© 2026 AIWatcher. All Rights Reserved.