Gold sponsors
Fastest growing markets
30d
1 🇮🇹 Italy +28.9%
2 🇮🇷 Iran +7.6%
3 🇦🇮 Anguilla +2.9%
4 🇪🇪 Estonia +2.7%
5 🇳🇬 Nigeria +1.9%
6 🇸🇮 Slovenia +1.8%
7 🇭🇰 Hong Kong +1.4%
8 🇷🇴 Romania +0.5%
9 🇬🇷 Greece +0%
10 🇷🇸 Serbia −0.1%
Market moves last 30 days
1jindun9.com+119.8%
4mismes.com+57.7%
2Registrar.eu−55.8%
4dnsimple.com−48.4%
5parklogic.com−39.6%
Industry buzz live
Backed by hosting's best
Their support keeps us independent so we can help the hosting industry stay a step ahead through honest, no-BS coverage.
BECOME A SPONSOR →
Latest news
See all news →
Security
A Once-a-Decade WordPress Core Flaw, and the Gap Between Patched and Safe
by Natalia Nowak · 21 Jul 2026
A critical flaw in WordPress core, the first of its kind in nearly a decade, triggered a rare forced update to millions of sites. Within 72 hours it was mass exploitation, because forced updates never reach everyone. Why patched and safe are not the same thing.
Security
A 16-Year-Old KVM Escape, and OVHcloud’s Week-Long Patch Across a Million VMs
by Natalia Nowak · 21 Jul 2026
A 16-year-old flaw in KVM let a customer with admin access escape their virtual server and seize the host on both Intel and AMD. OVHcloud built a fix and rebooted around a million VMs in a week to deploy it, and the campaign shows the quiet choice every host makes between your consent and your safety.
Industry reports
H1 2026: The Six Months That Repriced Hosting
by Natalia Nowak · 20 Jul 2026
H1 2026 synthesized from forty pieces of verified reporting: renewal spreads past 5x, RAM and storage up 50–300%, domain escalators restarted into record demand, the acquisition funnel measurably broken, $850B of leases off balance sheet, and the machine customer arriving. Growth by invoice.
Security
A Critical Nginx Flaw and Who Is Actually Exposed
by Natalia Nowak · 20 Jul 2026
F5 patched CVE-2026-42533, a heap-overflow flaw in Nginx rated 9.2 that has sat in the code since 2011. It is unauthenticated and remote, but only triggers under a specific regex-map configuration, so not every server is exposed. With a proof-of-concept exploit due in early August, here is who actually needs to patch.
Security
An Unauthenticated Path to Code Execution in WordPress Core, Already Being Exploited
by Łukasz Nowak · 18 Jul 2026
A flaw in the heart of WordPress lets a complete stranger seize a site without ever logging in, and the attacks began the day it was disclosed. Millions of sites run the vulnerable code, and the only real protection is an update most owners assume already happened.
Industry reports
Cloudways Just Handed AI Agents the Admin Panel, and the Locks Are Racing to Catch Up
by Natalia Nowak · 17 Jul 2026
Cloudways' MCP server now exposes 244 tools, letting an AI agent run security scans, deployments, and billing on your hosting by chat. It is part of a wave, from DigitalOcean to cPanel, and its role-based scoped tokens stand out in a category where research finds many MCP servers insecure.
Browse the full archive
626 articles, filterable by category & tag
View all news →
Konrad Keck
Łukasz Gawior
Hosting M&A Desk with Konrad & Łukasz · M&A advisors
Hosting M&A Desk
Sell or acquire a hosting company with expert guidance. We connect sellers with 250+ verified buyers worldwide. Private deals, real valuations, and full support – from strategy to closing.
250+Verified buyers
100%Private & discreet
Check more
Stay ahead of the hosting industry

Be where 1,000+ hosting pros already are. News, M&A, market moves, security alerts — weekly, no bull.