logo

Critical cPanel Vulnerability Exploited in Southeast Asia Cyber Attacks

ID: 548d941b-6250-53ae-af73-164f8496f8c2

STIX ID: report--548d941b-6250-53ae-af73-164f8496f8c2

Feed Name: ThreatCluster

Threat Score
90/100

Date Published: 2026-05-04

Date Updated: 2026-05-05

...
...

A sophisticated campaign exploited cPanel CVE-2026-41940 (CVSS 9.8) in late April 2026 to breach government and military servers in Southeast Asia—particularly Indonesia—exfiltrating over 4GB of sensitive documents related to Chinese railway projects; the zero-day exploit chain also affected MSPs in the Philippines, Laos, Canada, and the U.S., and organizations are urged to patch immediately.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.