Follow along with the video below to see how to install our site as a web app on your home screen.
Note: This feature may not be available in some browsers.
Actually, that may also be for other reasons (cpanel anyhow).Interesting: My hosting provider has blocked access to cpanel, SSH, FTP among others in response to this exploit. Good to see they're on top of things.
At the pace zero days are seen in the wild, it might've been done this way due to being detected somewhere.Yeah, too bad a 3rd party released the information about DirtyFrag early. The original researcher who discovered it actually followed good disclosure procedures unlike Theori, who found CopyFail. So we shouldn't really know about DirtyFrag just yet.
Sometimes I honestly find it mind-boggling that companies/people think it's a good idea to drop some of these exploits on the world without preparation. Ubuntu only pushed CopyFail kernel fixes for versions like 22.04 today. They're so new they haven't even hit my repos yet.
If DirtyFrag was being exploited before the disclosure no one has mentioned it. The researcher only released his POC and all his documentation after a 3rd party released information about HIS reporting of the exploit. So basically he followed proper procedures. There was an embargo in place to keep the information private for a set number of days to allow time for it to be patched. A 3rd party who had access to the disclosure released information very prematurely, so here we with an unpatched LPE again due to stupidity.At the pace zero days are seen in the wild, it might've been done this way due to being detected somewhere.
Ah, that explains it better. Thanks.If DirtyFrag was being exploited before the disclosure no one has mentioned it. The researcher only released his POC and all his documentation after a 3rd party released information about HIS reporting of the exploit. So basically he followed proper procedures. There was an embargo in place to keep the information private for a set number of days to allow time for it to be patched. A 3rd party who had access to the disclosure released information very prematurely, so here we with an unpatched LPE again due to stupidity.
Could have been for a couple of years without no know able to tell, would not leave trace either (all in memory and the users get access to clean his tracks if there any), specially if it is a CCP, Mossad type entity that can afford to only use it on special occasion, specially with an working agent inside the institution using those....If DirtyFrag was being exploited before the disclosure no one has mentioned it.
I don't believe it is. They don't want people using SSH or FTP for obvious reasons as such tools can be used it to gain root access, and they don't want people having access to cpanel as they could re-enable SSH and FTP.Actually, that may also be for other reasons (cpanel anyhow).
https://thehackernews.com/2026/05/cpanel-whm-patch-3-new-vulnerabilities.htmlI don't believe it is. They don't want people using SSH or FTP for obvious reasons as such tools can be used it to gain root access, and they don't want people having access to cpanel as they could re-enable SSH and FTP.
Just to show it real quick, made a quick capture.
non sudo user, just python script. can just disable/unload the algif_aead module, which is the culprit.
View attachment 800187