Server hardening methodologies and best practices for your cPanel server. Please report suspected security issues to: security@cpanel.net

ConfigServer closing down and now what? Pinned
258 comments
cPanel's AutoSSL Pinned
9 comments
Forums Guidelines and FAQs Pinned
0 comments
Configserver and Firewall custom rules log locations
1 comment
Security problem IMAP/POP3 in cPanel
4 comments
Kernelcare and symlink ownership attacks
4 comments
Roundcube vulnerabilities ?
1 comment
cPHulk blocking IP address despite being in csf.allow
1 comment
Can we lock down https://example.com:2083, https://example.com:2096?
1 comment
csf blocking IP due to apple-touch-icon-precomposed.png
1 comment
ModSecurity blocking random js files on mobile view
2 comments
Roundcube - Multiple CVEs
4 comments
CRS versions 4.28.0, 4.25.1 LTS, and 3.3.10 released
0 comments
WP Toolkit vulnerability not found
4 comments
Can AutoSSL issue certificates for wildcard subdomains?
1 comment
CSF bug with whm-server-status
12 comments
How To Get Notifications For Security Updates
3 comments
How to Change WHM + cPanel Ports?
7 comments
CSF DENY_IP_LIMIT - googleusercontent.com
2 comments
Installing cPanel CSF on Servers Without cPanel
10 comments
WP Toolkit CVE-2026-47365
1 comment
Q: Automatic entries made to IP blocker?
3 comments
SSH password authentication is enabled.
3 comments
problems with autossl_check, checkallsslcerts and digicert.com
13 comments
HTTP/2 Bomb - CVE-2026-49975
4 comments
2FA does not work to access cPanel account through WHM
9 comments