Author: Natalia Nowak
116 articles
Exploring the web hosting industry through writing - panels, providers, and everything that runs behind the scenes.
Industry reports
Verisign Finally Won .web. Unlike .com, No One Caps Its Price.
Verisign spent a decade and $135 million to win .web. Unlike its government-capped .com, it can price the new domain however it wants.
Security
A Malware Campaign Is Using GitHub Actions to Hunt Unpatched cPanel Servers
A new campaign uses GitHub's own build servers to hunt cPanel and WHM servers still exposed to CVE-2026-41940, and steal their secrets.
Industry reports
August 2 Is Still Real: What the AI Act’s Big Date Means for Hosting After the Omnibus
The omnibus delayed the AI Act's high-risk regime, not August 2. GPAI fines and transparency duties still arrive on schedule. Hosting's map of who owes what.
Industry reports
An AWS Region Has Been Offline for Months, and the Cloud’s Address Is No Longer a Technicality
Drone strikes and fire have kept an AWS cloud region offline for months. The cloud has a physical address, and choosing a region carries real risk.
Industry reports
A Government ID for Every .ru Domain, and a Warning for Every Country Code
From September 1, every .ru owner must prove their identity to the Russian government or lose the domain. A reminder that a country code answers to its government.
Security
A Once-a-Decade WordPress Core Flaw, and the Gap Between Patched and Safe
WordPress did the rare thing and forced a core security fix to millions of sites. Within 72 hours the break-ins started anyway. The gap is the story.
Security
A 16-Year-Old KVM Escape, and OVHcloud’s Week-Long Patch Across a Million VMs
CVE-2026-53359 let a rented VM seize its host. OVHcloud rebooted around a million VMs in a week to patch it, on its own schedule, not yours.
Industry reports
H1 2026: The Six Months That Repriced Hosting
Every layer of hosting got a new price, owner or regulator in H1 2026. Our half-year of instruments, synthesized: growth by invoice, not by customer.
Security
A Critical Nginx Flaw and Who Is Actually Exposed
F5 patched a critical Nginx flaw (CVSS 9.2) latent since 2011. It only hits specific regex-map configs, and a proof-of-concept exploit is due in early August.
Industry reports
Cloudways Just Handed AI Agents the Admin Panel, and the Locks Are Racing to Catch Up
Cloudways now lets AI agents run almost your whole hosting account by chat. Its role-based tokens are a rare guardrail in a category where MCP security lags.
Reach hosting professionals
Sponsor webhosting.today and get in front of hosting buyers, founders and engineers.
50k+monthly readers
632articles