Emergency server help: get in touch

Services

Security Hardening

A baseline that stops the boring attacks, and an incident response when one gets through.

PaidThis is a paid service. You see the price and scope before you pay, and nothing is charged without your OK. See the refund policy.

What’s included

  • SSH, firewall, ModSecurity, cPHulk/CSF and kernel hardening against a written checklist
  • Malware clean-up and root-cause on compromised accounts
  • Imunify360 / CloudLinux CageFS review and tuning
  • Mail abuse: open relay, compromised accounts, blacklist delisting
  • A written report you can hand to a client or auditor

Pricing

Emergency clean-ups get a reply the same business day when they reach us before 15:00 UTC; hardening projects are quoted after a short audit.

All prices are in USD. Payment by card, bank transfer or Payoneer, with a proper invoice for every engagement.

How a security hardening project runs

  1. Audit: accounts, SSH, firewall, web server, PHP, database and mail settings are reviewed against a written checklist.
  2. Plan: you approve the list of changes, including anything that could affect customers.
  3. Changes: each change is applied with a rollback step and tested.
  4. Verification: scans and login tests confirm the changes work, and monitoring is set to catch regressions.
  5. Report: a written summary of what was changed, what remains and what to review in future.

For compromised servers the order changes: the first goal is to stop the abuse and preserve evidence, then clean up, find the entry point and harden against it.

At a glance

Security Hardening summary card: A baseline that stops the boring attacks, and an incident response when one gets through.
In short: A baseline that stops the boring attacks, and an incident response when one gets through.
Security Hardening sections: What's included, Pricing and How a security hardening project runs
Covers: What’s included, Pricing and How a security hardening project runs.
Security Hardening questions answered: What does security hardening cover? Do you clean hacked servers?
Answers: What does security hardening cover? Do you clean hacked servers?

Official documentation we work from: cPanel & WHM documentation, DirectAdmin documentation and the AlmaLinux wiki.

Frequently asked questions

What does security hardening cover?

SSH, firewall, ModSecurity, brute-force protection, kernel settings, CageFS and Imunify tuning, checked against a written list.

Do you clean hacked servers?

Yes. Emergency clean-ups get a reply the same business day when they reach us before 15:00 UTC, with root-cause analysis so it does not happen again.

Will I get documentation?

Yes. Every project ends with a written report you can share with a client or auditor.

Free website test

Is your website set up right?

Check SSL, security headers, redirects, robots.txt, sitemap, llms.txt and security.txt in one test. It takes about 30 seconds.