News Categories
RSS Feed
News
Nov
2

The LiteSpeed Plugin Vulnerability Affected 4 Million Websites

The popular LiteSpeed WordPress plugin recently addressed a serious vulnerability that left over 4 million websites at risk of compromise. The vulnerability, discovered by Wordfence, was a Cross-Site Scripting (XSS) vulnerability within the LiteSpeed plugin, which is widely used as a caching plugin for WordPress. XSS vulnerabilities exploit the lack of a security process called data sanitization and escaping, which filter the files that can be uploaded through legitimate inputs like contact forms. In the case of this vulnerability, the implementation of a shortcode functionality allowed hackers to upload malicious scripts by bypassing the necessary security protocols. 

 

 

However, Search Engine Journal points out that this specific vulnerability requires the hacker to obtain contributor-level permissions, making it more complex than other unauthenticated threats. To mitigate this risk, LiteSpeed Cache users should update their plugin to version 5.7 or higher, which was released on October 10, 2023. It is crucial for website owners to take action promptly to protect their sites from potential exploitation.

 

Sources:
– Wordfence: www.wordfence.com/blog/4-million-wordpress-sites-affected-by-stored-cross-site-scripting-vulnerability-in-litespeed-cache-plugin

Read more »



Oct
13
Deprecated ActiveSync (EAS) support for Outlook Desktop
Posted by Aiman R. on 13 October 2023 10:57 AM
Dear valued customer,
 
Please be informed that the ActiveSync (EAS) Protocol is no longer supported with Outlook Desktop. As you may be aware, Microsoft Exchange ActiveSync is a data synchronisation protocol that provides over-the-air access to email, calendars, and tasks on Windows and mobile devices. However, Microsft has discontinued the EAS Protocol starting with Outlook 2016. We apologised for the inconvenience; however, we recommend our existing Dynamail Premium with (EAS) customers utilise the MAPI Protocol or the standard (IMAP/POP3) Protocol. You may refer to the client/protocol breakdown below that was supported by SmarterMail:
 
 
We do apologise for any inconvenience this may cause. At this time, we can only support technologies built for their intended and specific purposes. This includes:
 
  • EAS for mobile synchronisation on iOS and Android, as well as the Windows Mail, People, and Calendar apps that ship with Windows 10.
  • MAPI/EWS for desktop synchronisation.
  • MAPI for Outlook for Windows
  • EWS for Outlook for Mac, as well as other clients such as eM Client and the native MacOS applications for Mail, Contacts, Calendars, Reminders, and Notes.
  • CalDAV, CardDAV, IMAP, and POP3 for virtually all mobile and desktop clients
 
To prevent instability in the EAS protocol, we recommend switching the settings to the MAPI protocol. If you would like to have these settings, kindly let us know, and we will make the necessary changes to the mail server accordingly.
 
NOTE: We no longer offer EAS / MAPI / EWS to new customers.
 

If you have any inquiries, kindly submit a ticket to us via 247livesupport.biz or you may also reach us via Telegram https://t.me/ShinjiruHosting

 
Thank you
 

Sincerely,

AimanR
System Administrator
------------------------------------
247 LiveSupport Department
- http://247livesupport.biz -
* Thank you for using 247LiveSupport System *


Read more »



Dec
23
Dear Valued Customer,
 
Please be informed, we have limited the 'maximum backups allowed per user' including all installation backups to two copies only per cPanel Account.
 
This auto backup is set to auto delete and retain only two copies at a time. From your softaculous page, you may choose the frequency of backup and rotation limit. 
 
 
 
 If you intend to keep the older copies of softaculous backup, we would advise you to download the backup copy to your local PC:
- Login to cPanel
- Click on Softaculous
- Click 'Backup and Restore'
- Select your installation and download the backup file.
 
At any time, you have the option to restore the website from a later date using our Jetbackup Software which can be found in your cPanel Account. 
 
Thank you for your cooperation and understanding.
 
Regards,
 

Shared Hosting Team

------------------------------------

* Thank you for using 247LiveSupport System *

 

Read more »



May
11
Shinjiru Shared Hosting Backup Policy
Posted by Zulkifli H. on 11 May 2021 05:29 PM
Dear Valued Customers,
 
We will start enforcing our backup policy on Shared Hosting Account. Any shared account using more than 10 gigs of disk space will be removed from our backup policy. To ensure continuous backup generation, User must ensure that his disk space consumption does not exceed 10 gigs. Your account will automatically backup into the next backup cycle once it reach below 10gigs threshold.
 
If you unable to reduce the storage to below 10GB, we will advise you to perform self backup and download it to your PC.
If you have a question, you may also reach us via Telegram https://t.me/ShinjiruHosting
 
Your cooperation and understanding are highly appreciated.
 
Thank you.
 
Sincerely,
Zul
System Administrator
------------------------------------
247 LiveSupport Department
- http://247livesupport.biz -
* Thank you for using 247LiveSupport System *

Read more »



May
14
Affiliate Program
Posted by Maria K on 14 May 2020 03:55 PM

Affiliate Program Update

May 19, 2020

Ladies & Gents,

We are ready to Rock & Roll with our brand new in-house Affiliate portal, tailored to impart its users with ultimate simplicity and swift manoeuvre.

You may have noticed the recent unfortunate events that required our immediate attention and swift action in delivering an all rounded secure platform for your use. We thank you for your patience while we moulded the perfect solution within a reasonable time-frame.

As all existing affiliate accounts were disabled on the previous portal, we kindly ask you to re-register on the new and improved platform. We advise you to axe-out all of the previous unique links from the old portal on your website(s) etc. and replace them with the new dedicated affiliate link from the latest platform launched.

Should you be an existing Shinjiru user, you may access the Affiliate tab from your Shinjiru billing portal (located right after “Open Ticket” tab. For all non-existing Shinjiru members who wish to purely be Shinjiru Affiliates, kindly sign up over on https://www.shinjiru.com/affiliates/#subnav-join

All Affiliates, whether OG’s or new joiners, will be eligible for the USD10 New Sign Up Commission!

Affiliate Team
Shinjiru

 

______________________________________________________________________________________________________________________

 

May 14, 2020

Dear Affiliates,

We have recently had to undergo a System Provider (SP) update in an expeditious manner as the previous SP notified us of an infrastructure critical vulnerability that cased the platform’s instability. Enclosed you may refer to one of the email communications proving the sudden downtime experienced on May 4th. To ensure data safeguard, we provisioned an immediate suspension on all accounts.

Any Affiliates with pre-approved commission on the previous portal will not lose their commission. While it was impractical to carry the commission forward to the new portal, your Account Manager has manually recorded all the records up until the 13th of May, allowing you to cash-out your balance upon request to [email protected]

All Affiliates will be able to create a new Affiliate Account on an in-house portal that is established and coffer. As always, we thank you for your continued support and patience while we coordinated a more secure solution interlinked to our own in-house system, ensuring ultimate reliability.

Your Account Manager is ready to answer any of your queries, feel free to email [email protected] to wrap up any approved-pending cash-out commissions.

Keep an eye on https://www.shinjiru.com/affiliates/ for a brand new face-lift, allowing you access to the new portal. An announcement will be posted soon with all the details to get you started. Once ready, you are advised to login to the new platform and create your account to access a new unique link that you may use instead of the suspended links from the previous platform.

Affiliate Team
Shinjiru

 


Read more »



Apr
17
Domain ON-HOLD Status
Posted by Mark O. on 17 April 2020 12:19 PM

Dear Domain Owner,

For any domains under your account that have been placed “OnHold”*, we assure you that we have been coordinating your case and working on getting the matter resolved the soonest possible. In the meantime, should you be in a rush to hop back in business, we urge you to contact us on [email protected]; direct your ticket to our abuse team, mentioning your domain name and supporting it with your company license + business activity to obtain a promo code on a new domain that you may use on your existing hosting plan, with a waived charge for our usual “Primary Domain Replacement” fee on your existing hosting plan with us.

Kindly be mindful that Registrar’s and Registry’s have been ultra efficient in auditing respective domain names under their system. Should your domain have been engaging in abuse, listed on spamhaus or similar, the domain might have been flagged for immediate suspension. If your domain falls under this category and you are unable to provide us with a valid company license and business activity to prove the legitimacy of your business, we regret to inform you that you will not be eligible for the offer stated above.

Please note that if your domain is a Strongbolt domain, it may still be affected by direct registrar/registry suspension without prior notification. Do bear in mind that Strongbolt is designed to first and foremost protect your identity. Whilst we, Shinjiru, try to maintain our assurance in not taking immediate action in suspending Strongbolt domains without prior notification, registrar/registry still have the right to practice their operating procedures in immediate suspension should they deem the domain high alert.

We urge you to review our AuP and T&C prior to contacting us. Domain names are non refundable once registered. Any SSL associated with your suspended domain will not be entitled for transfer to another new domain.

As always, we thank you for your understanding and cooperation.

*To check if your domain is “OnHold”, please visit who.is or whois.net

Domain And Anti-Abuse Team

 


Read more »




Copyright © 1998 - 2021 Shinjiru International Inc. All Rights Reserved.