#web-hosting — Web Hosting News

All web hosting articles tagged #web-hosting — 136 results.

Other
Automattic Is Not an Owner of the WordPress Marks It Asserted in Court, a Judge Rules
Natalia Nowak · 29 Sep 2026 · 6 min read
#automattic#web-hosting#wordpress
The September 24 order brings back four antitrust claims the same judge had dismissed in an earlier ruling. It also holds that Automattic and Mullenweg are neither owners nor registrants of the WordPress marks, so they cannot assert them in their own right.
Articles tagged #web-hosting
1–20 of 136
Security
The WordPress 7.1.2 Flaw Was Exploited in Hours. Theme and Host Decide the Damage.
by Natalia Nowak · 30 Sep 2026 · 9 min read
Attackers were writing PHP files through pearcmd.php by the evening of the day WordPress 7.1.2 shipped, and whether a site is reachable at all depends on its theme layout and on register_argc_argv, which is on by default under cPanel below PHP 8.5.
Other
Automattic Is Not an Owner of the WordPress Marks It Asserted in Court, a Judge Rules
by Natalia Nowak · 29 Sep 2026 · 6 min read
The September 24 order brings back four antitrust claims the same judge had dismissed in an earlier ruling. It also holds that Automattic and Mullenweg are neither owners nor registrants of the WordPress marks, so they cannot assert them in their own right.
Other
Dasabo Gave Customers Ten Days to Upload an ID. Refusal Means Termination and No Refund.
by Łukasz Nowak · 28 Sep 2026 · 10 min read
A VPS provider gave customers ten days to upload an ID and a live photo or lose their services, with no refund under clause 14.1 of its terms. Dasabo puts the demand only on flagged accounts. Customers on two forums and Trustpilot describe it reaching people who had only paid.
Software reviews
cPanel AI Is Generally Available. Meridian Is in the License. Nova Runs on Credits Nobody Has Priced.
by Łukasz Nowak · 25 Sep 2026 · 9 min read
cPanel declared cPanel AI generally available on September 17. Meridian, the AI Assistant, AI App Hosting and MCP sit inside the ordinary license, while Nova is partner-only and metered in AI credits whose wholesale price neither cPanel nor WebPros has published.
Security
cPanel Patches a Root Escalation That Starts From an Ordinary Hosting Account
by Natalia Nowak · 24 Sep 2026 · 5 min read
cPanel patched a privilege escalation running from an ordinary hosting account to root, plus a WP Toolkit flaw reaching other accounts' databases. Three builds shipped September 22, no severity score is published, and one researcher is credited on four root-level flaws across cPanel and Plesk.
Industry reports
ICANN Confirms 1,616 gTLD Applications Proceed. Reveal Day Expected by October 14.
by Natalia Nowak · 23 Sep 2026 · 8 min read
ICANN's September 22 count puts the 2026 gTLD round at 1,616 paid applications out of 1,663, smaller than 2012's 1,930. Reveal Day is due by October 14, the schedule promised for mid-September is now promised for the week of September 28, and contention will be settled without private auctions.
Software reviews
Ask nginx Which Config It Is Running. Not Every Build Will Answer.
by Natalia Nowak · 23 Sep 2026 · 7 min read
nginx can now be asked which configuration it is actually running, a question that had no answer before 1.31.5, and a reload now returns an HTTP status code with the logs attached. The Control API came out of the paid NGINX Plus release, and it ships with no authentication of its own.
Security
A Critical libheif Bug Reachable Through WordPress Uploads Still Has No CVE
by Natalia Nowak · 21 Sep 2026 · 8 min read
A researcher uploaded a crafted photo to a clean WordPress site and left a working PHP file on the server. The flaw is in libheif, a system library that arrives with the operating system, and twenty days after the fix shipped it still has no CVE number for patch pipelines to match.
Security
Three LiteSpeed Security Builds in Six Days: Check Which One Your Servers Run
by Natalia Nowak · 18 Sep 2026 · 7 min read
A cPanel advisory of September 14 covers a LiteSpeed Enterprise flaw that lets a hosting account past CageFS to root. LiteSpeed has since shipped 6.3.7 three times in six days, each build with a security change, and a server patched on the day of the advisory is no longer on the latest one.
Security
Acronis cPanel Backup Plugin: Exploited Privilege-Escalation Flaw on CISA’s List
by Natalia Nowak · 17 Sep 2026 · 5 min read
Acronis has patched CVE-2026-87886 in its backup plugin for cPanel and WHM and says it has been used in limited, targeted attacks, based on one customer report. CISA added it to its Known Exploited Vulnerabilities catalog on September 16 with a three-day deadline for US federal civilian agencies.
M&A
Before the Press Release: What We See in Hosting M&A
by Natalia Nowak · 16 Sep 2026 · 5 min read
Many owners who ask what their hosting business is worth have not decided to sell. Beyond the thirty deals announced in the first half of 2026 sit owners testing valuations, buyers with precise criteria, and conversations that run for months before anything becomes public.
Other
Elementor Opens an MCP Beta to Claude, Codex and Cursor
by Natalia Nowak · 16 Sep 2026 · 5 min read
Elementor, on more than ten million sites, has opened a beta letting Claude, Codex, Cursor and other MCP tools build pages as native Elementor structures. It runs on atomic pages, output stays a draft, and three of the nine capabilities need a second Elementor plugin.
Industry reports
We Ranked Hosting Two Ways. We Resolved 108 GoDaddy Domains: 96 Point at Amazon.
by Natalia Nowak · 15 Sep 2026 · 10 min read
Ranked by domains on their nameservers, GoDaddy leads with 73.1 million. Ranked by hosting attribution it falls to 3.5 million, but that column records whose address space a site is served from. We resolved a sample of GoDaddy's domains: 89% land in blocks registered to Amazon.
Partners
Why Unfinished Websites Are Costing Hosting Companies More Than They Think
by Zachery Mimbs · 15 Sep 2026 · 7 min read
An agency founder spent eighteen years being paid to finish websites for people who had already bought hosting elsewhere. He argues that customer was the host's first, that the loss rarely looks like a loss, and that support tickets are full of requests hosts currently turn away.
Stock reports
IONOS Is Cutting 12% of Its Workforce Five Weeks After Raising Its Revenue Outlook.
by Natalia Nowak · 11 Sep 2026 · 3 min read
IONOS will reduce headcount from about 3,800 to about 3,350, spending around EUR 35 million once to save up to EUR 30 million a year from 2027. IONOS says the savings will be reinvested, including in AI product development and cloud, and its 2026 adjusted EBITDA forecast is unchanged.
Other
group.one’s Ask Aida Completed 95% of Tasks in Customer Testing. Three Areas Still Required Human Support.
by Natalia Nowak · 11 Sep 2026 · 5 min read
In initial customer testing, Ask Aida completed 95% of tasks. Authentication, some external invoicing and abuse cases still required human support.
Other
Cloudflare Changes Its Crawler Defaults on September 15. Sites Blocking AI Training Will Start Blocking Googlebot.
by Natalia Nowak · 11 Sep 2026 · 8 min read
Cloudflare changes its AI crawler defaults on September 15. Crawlers that do more than one job will be judged by all of their behaviors, so sites that already block AI training will start blocking Googlebot. The new ad-page defaults reach every free-plan site left untouched.
Partners
Monarx Launches Dark Web Monitoring. One Domain Covers Every Address on It.
by Natalia Nowak · 10 Sep 2026 · 6 min read
Monarx Dark Web Monitoring begins with a domain rather than a list of mailboxes, sells white-label at a suggested $1.99 to $9.99 a month on a 50/50 revenue share, and today shows customers which categories of their data were breached rather than the data itself.
Other
Aruba Applied for 39 TLD Strings. The Private Auction That Won It .cloud Is Now Banned.
by Natalia Nowak · 10 Sep 2026 · 4 min read
Aruba, the Italian host that runs .cloud, told Domain Name Wire it applied for 39 strings in ICANN's 2026 round, among them vps, demo and pec. It won .cloud in a private auction, the route the new rules ban, which leaves an ICANN auction or a free switch to a fallback.
Security
A cPanel Account With Mail Privileges Could Reach Root. Every Supported Version Was Affected.
by Natalia Nowak · 9 Sep 2026 · 4 min read
cPanel has patched CVE-2026-67401. An authenticated account with mail-related privileges could create files through EmailTrack and reach code execution as root. All supported versions were affected, and the CVE record scores the flaw 9.9 out of 10, critical.
📬

Stay in the loop

Weekly digest of the best hosting news, reviews and industry moves.

Page 1 of 7