Emergency server help: get in touch

Linux

Linux server scripts, tools and guides for AlmaLinux, Rocky Linux, Ubuntu and Debian: hardening, firewalls, databases, mail and monitoring.

High Load cPanel Server: Find the Culprit Fast (5 Tools)

A repeatable diagnostic sequence for a cPanel server with a high load average, moving from load composition (CPU, I/O wait, memory pressure) to the process, account, vhost and query responsible, using tools already installed on every server.

September 29, 2026

cPanel Root Escalation Incident Response: Critical First 24 Hours

A structured response plan for a cPanel server that was exposed to one of the 2026 root-escalation vulnerabilities before patching, covering containment, evidence capture, indicators of the .sorry ransomware campaign, credential rotation, session and token audits, and the decision to rebuild.

September 29, 2026

Install cPanel AlmaLinux 10: 2026 Checklist

A practical checklist for installing cPanel & WHM on a fresh AlmaLinux 10 server, covering the pre-flight requirements that break installs, the installer itself, and the first WHM settings to lock down.

September 29, 2026

Hardening CSF safely: disabling Messenger, remote lists and other risky options

A settings-level review of csf.conf for hosting servers after the 2026 CSF vulnerabilities, covering which options widen the attack surface, what to turn off, what to tighten, and how to confirm the running firewall matches the file.

September 29, 2026

Mitigating Copy Fail, Dirty Frag and the DirectAdmin 1.711 TLS privilege escalation

Applying the kernel-side mitigations for the 2026 Copy Fail, Dirty Frag and Fragnesia local privilege escalations on DirectAdmin servers, updating to 1.711 for the TLS system fix, and verifying that each mitigation is actually in force.

September 29, 2026

CrowdSec vs Imunify360 vs BitNinja: choosing a post-CSF security stack for shared hosting

A practical comparison of the three products hosting providers most often evaluate after leaving CSF, covering what each one protects, how it integrates with cPanel and plain Linux, cost structure, operational load and which fleet each one suits.

September 29, 2026

CSF Fork 2026: Which Reliable Replacement After ConfigServer?

A comparison of the maintained CSF forks a year after ConfigServer closed, covering who maintains each one, which panels and operating systems they target, how they update, and which one fits a given fleet.

September 29, 2026

CSF AlmaLinux 10: nftables and ipset Problems Fixed

Why CSF behaves differently on AlmaLinux 10 and other EL10 systems, how the iptables-nft compatibility layer changes rule handling, why ipset-backed blocklists fail, and the settings that keep LFD useful while you choose a longer-term fix.

September 29, 2026

CSF CVE-2026-65638, 65639, 67402: Critical Patch Guide

What the three CSF vulnerabilities disclosed in August and September 2026 allow, which versions are affected, how to confirm a server is exposed, and the exact settings and versions that close each one on cPanel and standalone Linux servers.

September 29, 2026

cPanel Quotas Unlimited: fixquotas Repair

Why cPanel accounts show unlimited or zero disk usage after a migration, reboot or filesystem change, and how to repair user quotas on XFS and ext4 with fixquotas, mount options, quotacheck and the XFS project-quota caveats on AlmaLinux 9 and 10.

September 29, 2026

cPanel ELevate AlmaLinux 8 to 9 to 10: Safe Upgrade Steps

How to move a cPanel & WHM server from AlmaLinux 8 to 9 and then to 10 in place using cPanel's ELevate tool, including the pre-checks that block upgrades and how to recover from a failed stage.

September 29, 2026

Copy Fail Dirty Frag Mitigation: Critical 2026 Linux LPE Fix

How the three kernel local privilege-escalation flaws disclosed in spring 2026 work, how to block the modules they depend on immediately, what those blocks break, and how to verify a server is protected until a patched kernel or live patch is in place.

September 29, 2026

Free website test

Is your website set up right?

Check SSL, security headers, redirects, robots.txt, sitemap, llms.txt and security.txt in one test. It takes about 30 seconds.