Showing posts with label dedicated servers. Show all posts
Showing posts with label dedicated servers. Show all posts

Sunday, 4 December 2016

The Dirty COW Linux Exploit Patched Successfully

It has been some time since the nightmarish Poxy and Poodle vulnerabilities scared Internet users out of their wits, and now the web faces a new security exploit – a Linux kernel flaw bearing the ‘user-friendly’ name “Dirty COW”.
Dirty COW represents a privilege-escalation vulnerability that hackers can exploit and do harm to web servers using any Internet-connected device.
We’ve managed to address the issue on time and apply the necessary patches to our Linux-based system.

What is the Dirty COW security bug about?

In fact, the Dirty COW vulnerability is not new, at least not to Linux’s founder Linus Torvalds who admits to having uncovered it 11 years ago.
A bug fix patch was released in due time, but 3 years later it was undone by another security fix, leaving the Linux kernel vulnerable to network attacks for a period of 9 years. It was not until a couple of days ago that the ‘dirty’ Linux kernel threat re-surfaced online again.
According to Red Hat, the Dirty COW security flaw has left the Linux kernel vulnerable to unprivileged users who want to gain root access in order to increase their privileges and compromise the given server’s security.
This allows local users to gain write access to read-only memory mappings and hijack an Internet-connected device within practically a few seconds.
It is namely the broken copy-on-write (COW) mechanism in the Linux kernel that the flaw has been named after.

Evostrix Web Hosting

Evostrix Web Hosting Blog News

Tuesday, 29 November 2016

Dedicated Servers with extra billing cycles and exclusive discounts 10% 20%

Dedicated Servers with extra billing cycles and exclusive discounts 10% 20%.

Recently, we’ve introduced a major upgrade to our dedicated servers –
we’ve improved the hardware of the existing setups and added 8 new
configurations.
Up until now, only a monthly payment period has been available for the dedicated server packages.
With the new, just-in-time-for-Cyber-Monday update, our dedicated
server customers will be able to make use of 3- and 6-month billing
cycles, apart from the default monthly payment option.

Ready to order? Visit Evostrix Today:
Evostrix Web Hosting Dedicated Servers

Sunday, 27 November 2016

54% OFF on .EU domain registrations till the end of 2016

54% OFF on .EU domain registrations till the end of 2016.
One of the most sought-after domain extensions on our platform – .EU, now comes with a special promotional price, which is valid until the end of 2016.
Our customers can make use of a great discount on the fee for the first year of registration.
Ready to order? Visit Evostrix Today:
Evostrix Web Hosting

Wednesday, 28 September 2016

Evostrix Web Hosting Site Speed



Evostrix Professional Web Hosting plans provide you with a fantastic
value for your money. The SSD–equipped servers will help your web sites
function far better than those of the competitors. In addition, you can
make your sites considerably quicker with just a couple of mouse–clicks
with the web accelerators included in our easy–to–navigate Control
Panel, and maintain your data secured with the ZFS–based file storage
and Mod Security firewall implemented on our servers. You won't be
disappointed with our service or reliability.
To top it all, our hosting service is 100% risk–free and we offer a 30–day money–back guarantee.
We
offer FREE 30-day trial period For All Web Hosting Packages, during
which you can evaluate our services at your leisure. Sign Up today and
get your 30 day trial free with Evostrix Web Hosting: Try for Free. No
Credit Card Required.

Visit Evostrix Web Hosting

Dedicated Server Hosting

Dedicated Server Hosting

With a dedicated servers hosting, you can resolve any website performance-related problems. Picking a dependable US-based data center facility for your North America-oriented sites is decisive for reaching greater performance levels. This is why we work with a top-of-the-line datacenter facility situated in the heart of Chicago, Illinois. This partnership guarantees that all our dedicated server customers will enjoy much faster page load times. Our dedicated servers packages come with a free-of-cost web hosting Control Panel, a bunch of Linux distributions and a plethora of high value-added bonuses.

Saturday, 23 July 2016

httpoxy – a CGI application vulnerability now under control on our servers

A recently re-discovered server-side application vulnerability has been sending shivers down Internet users’ spine for a couple of days now.
The so-called ‘httpoxy’ vulnerability affects applications whose code is executed in CGI or other CGI-like environments.
To address this critical issue, we have enabled automatic website and app protection for managed solutions on our web hosting platform.

What is the httpoxy vulnerability about?

The new httpoxy vulnerability opens up ‘a green corridor’ for attackers to exploit the communication between a web application and other external applications via API.
If a vulnerable web application makes an outgoing HTTP connection, this could lead to a few critical consequences:
  • the outgoing HTTP requests could be proxied;
  • the server could be configured to send private information to a particular address and port;
  • the server resources could be exhausted by forcing the application to use a malicious proxy;
An outgoing connection could be exploited when the hacker makes a request that includes a ‘Proxy’ request header.
The CGI then turns the header into an environment variable called HTTP_PROXY, which is used to configure an outgoing proxy.
The web application in turn makes a request to a hacker-defined destination instead of the particular API. Let’s see how this translates in a real-life scenario.

Protection measures against httpoxy (Managed Services):

As soon as the httpoxy vulnerability was announced, we took immediate measures to patch all web hosting services, which are under our control.
These include:
  • All shared web hosting services;
  • All semi-dedicated servers;
  • Hepsia Control Panel-managed OpenVZ Virtual Private Servers;
  • Managed OpenVZ Virtual Private Servers;
  • Hepsia Control Panel-managed dedicated servers;
  • Managed dedicated servers;

Protection measures against httpoxy (Unmanaged Services):

If you are using a non-managed OpenVZ server, a KVM VPS or a dedicated server, or/and do not use the Hepsia Control Panel, then you will need to take immediate measures to protect your applications from the httpoxy vulnerability.
First of all, keep in mind that your applications are in fact immune to the httpoxy vulnerability in the following cases:
  • if your applications are making API requests over an encrypted (SSL/TLS/HTTPS) connection; httpoxy only affects unencrypted requests;
  • if you are not using CGI, but instead faster and better code environment alternatives that have been introduced over the last few years;
If you are using CGI, but have not yet made use of an encrypted connection, then you can easily prevent any exploit attacks by blocking the ‘Proxy’ header.

Ready to order? Visit Evostrix Today:
Evostrix Web Hosting