<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" version="2.0">
<channel>
<title><![CDATA[Reliable Penguin, Inc]]></title>
<link><![CDATA[https://help.reliablepenguin.com/]]></link>
<description />
<generator><![CDATA[Kayako fusion v4.66.2]]></generator>
<item>
<title><![CDATA[HTTP/2 Bomb DoS Vulnerability: CVE-2026-49975]]></title>
<link><![CDATA[https://help.reliablepenguin.com/index.php?/News/NewsItem/View/101]]></link>
<guid isPermaLink="false"><![CDATA[38b3eff8baf56627478ec76a704e9b52]]></guid>
<pubDate><![CDATA[Wed, 03 Jun 2026 11:06:08 +0000]]></pubDate>
<dc:creator><![CDATA[Lee Blakely]]></dc:creator>
<description><![CDATA[Posted: June 3, 2026 Category: Security Advisory Severity: High for public HTTP/2 endpoints
Reliable Penguin is aware of public reports regarding CVE-2026-49975, also referred to as the HTTP/2 Bomb vulnerability.
This issue may allow a remote attacker to ...]]></description>
<content:encoded><![CDATA[<p><strong>Posted:</strong> June 3, 2026<br /> <strong>Category:</strong> Security Advisory<br /> <strong>Severity:</strong> High for public HTTP/2 endpoints</p>
<p>Reliable Penguin is aware of public reports regarding <strong>CVE-2026-49975</strong>, also referred to as the <strong>HTTP/2 Bomb</strong> vulnerability.</p>
<p>This issue may allow a remote attacker to exhaust server memory on affected HTTP/2-enabled web servers, potentially causing service disruption or denial of service. Public reporting indicates that the issue relates to HTTP/2 header compression behavior and may affect multiple web server and proxy implementations, including NGINX, Apache HTTP Server, Microsoft IIS, Envoy, and Cloudflare Pingora.</p>
<h2>Current status</h2>
<p>Reliable Penguin is reviewing managed server environments and applying appropriate mitigations.</p>
<p>At this point, <strong>no customer action is necessary</strong>.</p>
<p>We will provide updates as they become available.</p>
<h2>What customers should do</h2>
<p>No action is required from Reliable Penguin managed hosting customers at this time.</p>
<p>Customers with questions may open a support request through the Reliable Penguin help desk.</p>
<h2>References</h2>
<ul>
<li>The Hacker News: <a href="https://thehackernews.com/2026/06/new-http2-bomb-vulnerability-allows.html" target="_blank" rel="noopener noreferrer"> &ldquo;New HTTP/2 Bomb Vulnerability Allows Remote DoS on NGINX, Apache, IIS, Envoy &amp; Cloudflare&rdquo; </a>, published June 3, 2026.</li>
<li>Calif: <a href="https://blog.calif.io/p/codex-discovered-a-hidden-http2-bomb" target="_blank" rel="noopener noreferrer"> &ldquo;Codex Discovered a Hidden HTTP/2 Bomb&rdquo; </a>, published June 2, 2026.</li>
<li>mod_http2 release notes: <a href="https://github.com/icing/mod_h2/releases" target="_blank" rel="noopener noreferrer"> Version 2.0.41 release notes </a>, noting a fix for cookie header accounting against <code>LimitRequestFields</code>.</li>
</ul>]]></content:encoded>
</item>
<item>
<title><![CDATA[Advanced Custom Fields: Extended WordPress Plugin Vulnerability]]></title>
<link><![CDATA[https://help.reliablepenguin.com/index.php?/News/NewsItem/View/100]]></link>
<guid isPermaLink="false"><![CDATA[f899139df5e1059396431415e770c6dd]]></guid>
<pubDate><![CDATA[Tue, 02 Jun 2026 00:23:56 +0000]]></pubDate>
<dc:creator><![CDATA[Lee Blakely]]></dc:creator>
<description><![CDATA[Reliable Penguin has reviewed managed WordPress servers for a recently disclosed vulnerability in the Advanced Custom Fields: Extended WordPress plugin, also commonly referred to as ACF Extended or ACFE.
Summary
Wordfence published an advisory for a criti...]]></description>
<content:encoded><![CDATA[<p>Reliable Penguin has reviewed managed WordPress servers for a recently disclosed vulnerability in the Advanced Custom Fields: Extended WordPress plugin, also commonly referred to as ACF Extended or ACFE.</p>
<h2>Summary</h2>
<p>Wordfence published an advisory for a critical unauthenticated privilege escalation vulnerability in the Advanced Custom Fields: Extended WordPress plugin. The issue affects Advanced Custom Fields: Extended versions <strong>up to and including 0.9.2.5</strong> and is patched in <strong>version 0.9.2.6</strong>. Wordfence assigned the vulnerability a <strong>CVSS score of 9.8</strong>, which is considered critical.</p>
<p>According to Wordfence, the vulnerability may allow an unauthenticated attacker to escalate privileges by abusing validation handling related to the <code>_acf_post_id</code> parameter. The advisory notes that exploitation depends on site configuration, specifically whether the site exposes a public ACFE frontend form configured with a Create User action that maps a role field.</p>
<h2>Reliable Penguin Response</h2>
<p>Reliable Penguin used our internal <strong>RP Anvil</strong> system to review managed servers for WordPress installations using vulnerable Advanced Custom Fields: Extended plugin versions.</p>
<p>As part of this review, RP Anvil scanned managed systems for Advanced Custom Fields: Extended plugin installations and checked installed versions against the vulnerable range identified in the advisory.</p>
<p>At this time:</p>
<ul>
<li>Managed servers have been reviewed.</li>
<li>Clients with potentially vulnerable WordPress installations have been notified directly.</li>
<li>No client action is required at this point for Reliable Penguin managed systems unless we have contacted you directly.</li>
</ul>
<h2>What Clients Should Do</h2>
<p>For Reliable Penguin managed systems, no action is required unless you have received a direct notification from us.</p>
<p>For WordPress sites not managed by Reliable Penguin, site owners should review their installations and update Advanced Custom Fields: Extended to <strong>version 0.9.2.6 or newer</strong>. Wordfence recommends updating as soon as possible due to the critical nature of this vulnerability.</p>
<p>Site owners should also review any public ACFE frontend forms, especially forms configured to create users or assign user roles.</p>
<h2>Additional Resources</h2>
<ul>
<li><a href="https://www.wordfence.com/threat-intel/vulnerabilities/wordpress-plugins/acf-extended/advanced-custom-fields-extended-0925-unauthenticated-privilege-escalation-via-validation-bypass-to-acf-post-id-parameter" target="_blank" rel="noopener"> Wordfence Intelligence: Advanced Custom Fields: Extended &lt;= 0.9.2.5 - Unauthenticated Privilege Escalation </a></li>
<li><a href="https://wordpress.org/plugins/acf-extended/" target="_blank" rel="noopener"> Advanced Custom Fields: Extended plugin page on WordPress.org </a></li>
</ul>
<h2>Questions</h2>
<p>If you have questions about this vulnerability or your managed WordPress environment, please contact Reliable Penguin support.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Kirki WordPress Plugin Vulnerability]]></title>
<link><![CDATA[https://help.reliablepenguin.com/index.php?/News/NewsItem/View/99]]></link>
<guid isPermaLink="false"><![CDATA[ac627ab1ccbdb62ec96e702f07f6425b]]></guid>
<pubDate><![CDATA[Tue, 02 Jun 2026 00:14:29 +0000]]></pubDate>
<dc:creator><![CDATA[Lee Blakely]]></dc:creator>
<description><![CDATA[Reliable Penguin has reviewed managed WordPress servers for a recently disclosed vulnerability in the Kirki WordPress plugin.
Summary
Wordfence published an advisory for a critical unauthenticated privilege escalation vulnerability in the Kirki WordPress ...]]></description>
<content:encoded><![CDATA[<p>Reliable Penguin has reviewed managed WordPress servers for a recently disclosed vulnerability in the Kirki WordPress plugin.</p>
<h2>Summary</h2>
<p>Wordfence published an advisory for a critical unauthenticated privilege escalation vulnerability in the Kirki WordPress plugin. The issue affects Kirki versions <strong>6.0.0 through 6.0.6</strong> and is patched in <strong>version 6.0.7</strong>. Wordfence assigned the vulnerability a <strong>CVSS score of 9.8</strong>, which is considered critical.</p>
<p>According to Wordfence, the vulnerability can allow an unauthenticated attacker to take over user accounts, including administrator accounts, by abusing the plugin&rsquo;s password reset functionality.</p>
<h2>Reliable Penguin Response</h2>
<p>Reliable Penguin used our internal <strong>RP Anvil</strong> system to review managed servers for WordPress installations using vulnerable Kirki plugin versions.</p>
<p>As part of this review, RP Anvil scanned managed systems for Kirki plugin installations and checked installed versions against the vulnerable range identified in the advisory.</p>
<p>At this time:</p>
<ul>
<li>Managed servers have been reviewed.</li>
<li>Clients with vulnerable WordPress installations have been notified directly.</li>
<li>No client action is required at this point for Reliable Penguin managed systems unless we have contacted you directly.</li>
</ul>
<h2>What Clients Should Do</h2>
<p>For Reliable Penguin managed systems, no action is required unless you have received a direct notification from us.</p>
<p>For WordPress sites not managed by Reliable Penguin, site owners should review their installations and update Kirki to <strong>version 6.0.7 or newer</strong>. Wordfence recommends updating as soon as possible due to the critical nature of this vulnerability.</p>
<h2>Additional Resources</h2>
<ul>
<li><a href="https://www.wordfence.com/blog/2026/06/unauthenticated-privilege-escalation-vulnerability-patched-in-kirki-wordpress-plugin/" target="_blank" rel="noopener"> Wordfence: Unauthenticated Privilege Escalation Vulnerability Patched in Kirki WordPress Plugin </a></li>
<li><a href="https://www.wordfence.com/threat-intel/vulnerabilities/wordpress-plugins/kirki/" target="_blank" rel="noopener"> Wordfence Intelligence vulnerability summary for Kirki </a></li>
<li><a href="https://wordpress.org/plugins/kirki/" target="_blank" rel="noopener"> Kirki plugin page on WordPress.org </a></li>
</ul>
<h2>Questions</h2>
<p>If you have questions about this vulnerability or your managed WordPress environment, please contact Reliable Penguin support.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Introducing RP Periscope]]></title>
<link><![CDATA[https://help.reliablepenguin.com/index.php?/News/NewsItem/View/98]]></link>
<guid isPermaLink="false"><![CDATA[ed3d2c21991e3bef5e069713af9fa6ca]]></guid>
<pubDate><![CDATA[Sun, 31 May 2026 00:52:34 +0000]]></pubDate>
<dc:creator><![CDATA[Lee Blakely]]></dc:creator>
<description><![CDATA[
Reliable Penguin is introducing RP Periscope, a new security update monitoring system designed to help our team track important software, platform, and vendor security advisories more consistently.
RP Periscope gives Reliable Penguin a centralized way to...]]></description>
<content:encoded><![CDATA[<p><img style="float: right; width: 300px; max-width: 40%; height: auto; margin: 10px 0 30px 40px; padding: 12px;" src="https://help.reliablepenguin.com/images/RP%20Periscope%20Logo.png" alt="RP Periscope logo" /></p>
<p>Reliable Penguin is introducing <strong>RP Periscope</strong>, a new security update monitoring system designed to help our team track important software, platform, and vendor security advisories more consistently.</p>
<p>RP Periscope gives Reliable Penguin a centralized way to monitor security information from trusted sources and evaluate whether those updates may affect the systems, websites, and infrastructure we manage for our clients.</p>
<p>Security advisories are often spread across many different vendor sites, mailing lists, release notes, RSS feeds, and technical bulletins. RP Periscope helps bring that information together so our team can review it more efficiently and respond when action may be needed.</p>
<h2>What RP Periscope monitors</h2>
<p>RP Periscope monitors security-related updates from sources connected to technologies commonly used across Reliable Penguin managed environments, including:</p>
<ul>
<li>Linux distributions such as AlmaLinux and Ubuntu</li>
<li>Hosting control panels such as Plesk and cPanel</li>
<li>CMS platforms such as WordPress and Drupal</li>
<li>WordPress plugins, themes, and related ecosystem advisories</li>
<li>Infrastructure software and vendor security bulletins</li>
<li>Other relevant security feeds and update sources</li>
</ul>
<h2>How RP Periscope helps</h2>
<p>RP Periscope supports Reliable Penguin&rsquo;s security operations by helping us identify and organize security updates that may require review, follow-up, or client communication.</p>
<p>The system helps our team:</p>
<ul>
<li>Monitor security advisories from multiple trusted sources</li>
<li>Identify potentially urgent vulnerabilities</li>
<li>Classify alerts by relevance and urgency</li>
<li>Improve visibility across managed client environments</li>
<li>Support faster internal review and response</li>
<li>Communicate more clearly when client action may be required</li>
</ul>
<h2>What this means for Reliable Penguin clients</h2>
<p>For clients, there is no action required as part of this announcement. RP Periscope is an internal Reliable Penguin system that strengthens our ability to monitor security developments and respond appropriately.</p>
<p>When a security update, vulnerability, or vendor advisory requires action on a client system, Reliable Penguin will continue to communicate directly through our normal support and account channels.</p>
<p>RP Periscope does not replace regular maintenance, patching, backups, monitoring, or security best practices. Instead, it adds another layer of visibility to help our team stay informed about emerging risks and important updates.</p>
<h2>Why we built RP Periscope</h2>
<p>Modern websites and hosting environments depend on many different layers of software. Operating systems, control panels, web servers, CMS platforms, plugins, themes, libraries, and vendor tools can all have security updates that matter.</p>
<p>Because these updates come from many different sources, it can be difficult to track everything manually and consistently. RP Periscope was built to help Reliable Penguin centralize this monitoring and make security review more systematic.</p>
<p>By improving how we collect and review security advisories, we can better prioritize issues, reduce noise, and focus attention on updates that may matter most to our clients.</p>
<h2>Our goal</h2>
<p>RP Periscope reflects Reliable Penguin&rsquo;s ongoing investment in managed hosting, maintenance, and security operations.</p>
<p>Our goal is simple:</p>
<p><strong>We See Threats. You Stay Secure.</strong></p>
<p>RP Periscope is one more way Reliable Penguin helps clients stay informed, protected, and prepared.</p>
<div style="clear: both;">&nbsp;</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Linux CIFSwitch Vulnerability]]></title>
<link><![CDATA[https://help.reliablepenguin.com/index.php?/News/NewsItem/View/97]]></link>
<guid isPermaLink="false"><![CDATA[e2ef524fbf3d9fe611d5a8e90fefdc9c]]></guid>
<pubDate><![CDATA[Sat, 30 May 2026 18:17:56 +0000]]></pubDate>
<dc:creator><![CDATA[Lee Blakely]]></dc:creator>
<description><![CDATA[A newly disclosed Linux vulnerability nicknamed CIFSwitch may allow a local, unprivileged user to gain root privileges on some Linux systems.
The issue affects the interaction between the Linux kernel&rsquo;s CIFS/SMB client and the user-space cifs-utils ...]]></description>
<content:encoded><![CDATA[<p>A newly disclosed Linux vulnerability nicknamed <strong>CIFSwitch</strong> may allow a local, unprivileged user to gain root privileges on some Linux systems.</p>
<p>The issue affects the interaction between the Linux kernel&rsquo;s <strong>CIFS/SMB client</strong> and the user-space <strong>cifs-utils</strong> authentication helper. CIFS is commonly used to mount SMB/Windows-style network shares on Linux systems. The vulnerability is most relevant on systems where CIFS/SMB support and <code>cifs-utils</code> are installed, especially where Kerberos/SPNEGO authentication support is present.</p>
<h2>What is the vulnerability?</h2>
<p>CIFSwitch is a <strong>local privilege escalation</strong> vulnerability. It does not allow remote exploitation by itself. An attacker generally needs local access to the system first, such as a shell account, compromised web user, compromised container context, or another foothold.</p>
<p>The vulnerability involves forged <code>cifs.spnego</code> key requests. Under vulnerable conditions, an unprivileged user can trigger the normal CIFS authentication workflow and cause the root-run <code>cifs.upcall</code> helper to trust attacker-controlled fields. The public technical analysis describes an exploit chain involving namespace switching and Name Service Switch behavior before privileges are dropped, which can result in root code execution.</p>
<h2>Who may be affected?</h2>
<p>The vulnerability is not universal, but several common Linux distributions or configurations may be affected.</p>
<p>Affected or potentially affected environments include combinations of:</p>
<ul>
<li>A vulnerable Linux kernel</li>
<li><code>cifs-utils</code>, particularly systems where the <code>cifs.upcall</code> helper is present</li>
<li>CIFS/SMB client functionality enabled or available</li>
<li>Unprivileged user namespaces enabled</li>
<li>SELinux, AppArmor, or other local security policies that do not block the exploit path</li>
</ul>
<p>Public reporting and vendor advisories indicate that this issue can affect multiple Linux distributions depending on package versions, kernel updates, and local security policy.</p>
<h2>Reliable Penguin response</h2>
<p>Using our automation platform, Reliable Penguin has reviewed all servers in our managed fleet for exposure to this vulnerability and has taken appropriate mitigation steps where needed.</p>
<p><strong>At this point, no action is necessary from clients.</strong></p>
<p>If we identify any system-specific concerns that require client involvement, we will contact the affected client directly.</p>
<h2>References</h2>
<ul>
<li><a href="https://www.bleepingcomputer.com/news/security/new-cifswitch-linux-flaw-gives-root-on-multiple-distributions/" target="_blank" rel="noopener"> BleepingComputer: New CIFSwitch Linux flaw gives root on multiple distributions </a></li>
<li><a href="https://heyitsas.im/posts/cifswitch/" target="_blank" rel="noopener"> Technical analysis: CIFSwitch: a non-universal Linux local root vulnerability </a></li>
<li><a href="https://www.openwall.com/lists/oss-security/2026/05/29/1" target="_blank" rel="noopener"> Openwall oss-security disclosure: CIFSwitch Linux kernel/cifs-utils local root via forged CIFS SPNEGO description </a></li>
<li><a href="https://blog.cloudlinux.com/cifswitch-mitigation-and-kernel-update" target="_blank" rel="noopener"> CloudLinux: CIFSwitch Mitigation and Kernel Update </a></li>
</ul>]]></content:encoded>
</item>
<item>
<title><![CDATA[Security Notice: LiteSpeed cPanel Plugin Vulnerability CVE-2026-48172]]></title>
<link><![CDATA[https://help.reliablepenguin.com/index.php?/News/NewsItem/View/96]]></link>
<guid isPermaLink="false"><![CDATA[26657d5ff9020d2abefe558796b99584]]></guid>
<pubDate><![CDATA[Sat, 23 May 2026 18:21:31 +0000]]></pubDate>
<dc:creator><![CDATA[Lee Blakely]]></dc:creator>
<description><![CDATA[
Published: May 23, 2026
Status: Reviewed and remediated
Client action required: No
Reliable Penguin has completed a review of all managed WHM/cPanel servers in response to the recently disclosed LiteSpeed cPanel plugin vulnerability, tracked as CVE-2026-...]]></description>
<content:encoded><![CDATA[<article>
<p><strong>Published:</strong> May 23, 2026</p>
<p><strong>Status:</strong> Reviewed and remediated</p>
<p><strong>Client action required:</strong> No</p>
<p>Reliable Penguin has completed a review of all managed WHM/cPanel servers in response to the recently disclosed LiteSpeed cPanel plugin vulnerability, tracked as <strong>CVE-2026-48172</strong>.</p>
<p>This vulnerability affects certain versions of the LiteSpeed User-End cPanel Plugin and may allow privilege escalation on impacted systems. The issue does not affect every WHM/cPanel server, but it is relevant to environments where the affected LiteSpeed cPanel user-end plugin was installed.</p>
<p>As part of our managed security response, Reliable Penguin has:</p>
<ul>
<li>Reviewed all managed WHM/cPanel servers for exposure.</li>
<li>Identified whether the affected LiteSpeed cPanel plugin was present.</li>
<li>Applied appropriate vendor patches and/or mitigations where needed.</li>
<li>Confirmed that no client-side action is required at this time.</li>
</ul>
<p>LiteSpeed web service functionality is not expected to be impacted by the mitigation steps. Websites using LiteSpeed or LiteSpeed Cache should continue to operate normally.</p>
<p>We will continue monitoring vendor advisories and security updates related to this issue. If any additional action becomes necessary for a managed server, Reliable Penguin will handle it directly or contact affected clients with specific instructions.</p>
<p>For questions, please contact Reliable Penguin Support.</p>
<p><strong>Summary:</strong> Reliable Penguin has reviewed all managed WHM/cPanel servers for CVE-2026-48172 and applied appropriate patches and/or mitigations. No client action is necessary at this time.</p>
</article>]]></content:encoded>
</item>
<item>
<title><![CDATA[Drupal Security Release Notice - CVE-2026-9082]]></title>
<link><![CDATA[https://help.reliablepenguin.com/index.php?/News/NewsItem/View/95]]></link>
<guid isPermaLink="false"><![CDATA[812b4ba287f5ee0bc9d43bbf5bbe87fb]]></guid>
<pubDate><![CDATA[Thu, 21 May 2026 11:41:53 +0000]]></pubDate>
<dc:creator><![CDATA[Lee Blakely]]></dc:creator>
<description><![CDATA[Drupal has published SA-CORE-2026-004, a highly critical Drupal core security advisory for a SQL injection vulnerability in Drupal core.
The vulnerability is tracked as CVE-2026-9082 and has been rated Highly critical, 20/25 by the Drupal Security Team. T...]]></description>
<content:encoded><![CDATA[<p>Drupal has published <strong>SA-CORE-2026-004</strong>, a highly critical Drupal core security advisory for a SQL injection vulnerability in Drupal core.</p>
<p>The vulnerability is tracked as <strong>CVE-2026-9082</strong> and has been rated <strong>Highly critical, 20/25</strong> by the Drupal Security Team. The primary issue affects Drupal sites using <strong>PostgreSQL databases</strong>. Drupal states that the vulnerability may be exploitable by anonymous users and could allow arbitrary SQL injection, potentially leading to information disclosure, privilege escalation, remote code execution, or other attacks.</p>
<p>Drupal has also included coordinated upstream dependency security updates for <strong>Symfony</strong> and <strong>Twig</strong> in the supported Drupal core releases. Because of those dependency updates, Drupal recommends updating even for sites that are not using PostgreSQL.</p>
<p>Reliable Penguin does not perform Drupal application updates. Drupal site owners and administrators should review their own Drupal installations, determine whether their sites are affected, and take appropriate action based on Drupal&rsquo;s official advisory.</p>
<p>Affected Drupal versions include Drupal core versions from <strong>8.9.0 through versions before 10.4.10</strong>, <strong>10.5.x before 10.5.10</strong>, <strong>10.6.x before 10.6.9</strong>, <strong>11.0.x before 11.1.10</strong>, <strong>11.2.x before 11.2.12</strong>, and <strong>11.3.x before 11.3.10</strong>. Drupal recommends updating to the latest available release for your supported branch.</p>
<p>Site owners should apply updates promptly and review which user roles have permission to update Twig templates, such as through Views or contributed modules.</p>
<p>Read the official Drupal security advisory:<br /> <a href="https://www.drupal.org/sa-core-2026-004" target="_blank" rel="noopener">https://www.drupal.org/sa-core-2026-004</a></p>
<p>For urgent questions, please contact Reliable Penguin support.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Drupal Security Release Notice]]></title>
<link><![CDATA[https://help.reliablepenguin.com/index.php?/News/NewsItem/View/94]]></link>
<guid isPermaLink="false"><![CDATA[f4b9ec30ad9f68f89b29639786cb62ef]]></guid>
<pubDate><![CDATA[Wed, 20 May 2026 10:18:15 +0000]]></pubDate>
<dc:creator><![CDATA[Lee Blakely]]></dc:creator>
<description><![CDATA[Drupal has announced an upcoming highly critical Drupal core security release scheduled for Wednesday, May 20, 2026, between 1:00 PM and 5:00 PM EDT.
Reliable Penguin is monitoring the release window and will review the advisory as soon as Drupal publishe...]]></description>
<content:encoded><![CDATA[<p>Drupal has announced an upcoming <strong>highly critical Drupal core security release</strong> scheduled for <strong>Wednesday, May 20, 2026, between 1:00 PM and 5:00 PM EDT</strong>.</p>
<p>Reliable Penguin is monitoring the release window and will review the advisory as soon as Drupal publishes the update. If any hosted or managed Drupal sites are affected, we will prioritize applying the required security updates and mitigation steps.</p>
<p>Drupal has indicated that not all configurations may be affected, but site owners should reserve time during the release window to evaluate and apply updates promptly. Exploit details may become available within hours or days after disclosure.</p>
<p><a href="https://www.drupal.org/psa-2026-05-18" target="_blank" rel="noopener noreferrer"> Read the official Drupal security release notice </a></p>
<p>For urgent questions, please contact Reliable Penguin support.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Security Notice: Upcoming cPanel &amp; WHM Security Patch — May 20, 2026]]></title>
<link><![CDATA[https://help.reliablepenguin.com/index.php?/News/NewsItem/View/93]]></link>
<guid isPermaLink="false"><![CDATA[98dce83da57b0395e163467c9dae521b]]></guid>
<pubDate><![CDATA[Mon, 18 May 2026 16:51:58 +0000]]></pubDate>
<dc:creator><![CDATA[Lee Blakely]]></dc:creator>
<description><![CDATA[Update: May 20, 2026
cPanel has released the security patches for this notice ahead of the originally scheduled release time. The patched builds are now available for affected versions of cPanel &amp; WHM.
This release addresses multiple security issues, ...]]></description>
<content:encoded><![CDATA[<p><strong>Update: May 20, 2026</strong></p>
<p>cPanel has released the security patches for this notice ahead of the originally scheduled release time. The patched builds are now available for affected versions of <strong>cPanel &amp; WHM</strong>.</p>
<p>This release addresses multiple security issues, including vulnerabilities rated up to <strong>High severity</strong>. cPanel has identified the following items as addressed in this release:</p>
<ul>
<li><strong>SEC-73728</strong>: <a href="https://support.cpanel.net/hc/en-us/articles/40555378241943-Security-SEC-73728-cPanel-WHM-WP2-Security-Update-May-19-2026"> cPanel &amp; WHM / WP2 Security Update May 19, 2026 </a></li>
<li><strong>SEC-73755</strong>: <a href="https://support.cpanel.net/hc/en-us/articles/40555594160023-Security-SEC-73755-cPanel-WHM-WP2-Security-Update-May-19-2026"> cPanel &amp; WHM / WP2 Security Update May 19, 2026 </a></li>
<li><strong>LiteSpeed User-End cPanel Plugin</strong>: A privilege-escalation vulnerability allowing unauthorized root access. cPanel has stated this issue is actively being exploited in the wild. As an interim security measure, cPanel has included an automated fix in this release that removes the plugin. <a href="https://support.cpanel.net/hc/en-us/articles/40599423437079-Security-LiteSpeed-plugin-automatically-removed-during-nightly-update-May-19-2026"> Read the cPanel LiteSpeed plugin security notice </a>.</li>
</ul>
<p><strong>Minimum Patched Builds</strong></p>
<p>Servers should be updated to the appropriate patched build or later:</p>
<table>
<thead>
<tr><th>Tier</th><th>Minimum Patched Build</th></tr>
</thead>
<tbody>
<tr>
<td>11.136 (WP Squared)</td>
<td>11.136.1.16 and higher</td>
</tr>
<tr>
<td>11.136</td>
<td>11.136.0.13 and higher</td>
</tr>
<tr>
<td>11.134</td>
<td>11.134.0.29 and higher</td>
</tr>
<tr>
<td>11.132</td>
<td>11.132.0.35 and higher</td>
</tr>
<tr>
<td>11.130</td>
<td>11.130.0.26 and higher</td>
</tr>
<tr>
<td>11.126</td>
<td>11.126.0.62 and higher</td>
</tr>
<tr>
<td>11.124</td>
<td>11.124.0.41 and higher</td>
</tr>
<tr>
<td>11.118</td>
<td>11.118.0.68 and higher</td>
</tr>
<tr>
<td>11.110</td>
<td>11.110.0.121 and higher</td>
</tr>
<tr>
<td>11.110 (cl6110)</td>
<td>11.110.0.120 and higher</td>
</tr>
<tr>
<td>11.102</td>
<td>11.102.0.43 and higher</td>
</tr>
<tr>
<td>11.94</td>
<td>11.94.0.32 and higher</td>
</tr>
<tr>
<td>11.86</td>
<td>11.86.0.45 and higher</td>
</tr>
</tbody>
</table>
<p><strong>Reliable Penguin Response</strong></p>
<p>Reliable Penguin is applying the available cPanel &amp; WHM security updates across managed client servers. We strongly recommend that any affected servers not managed by Reliable Penguin be updated manually as soon as possible.</p>
<p>For servers managed by Reliable Penguin, <strong>no customer action is required</strong> unless we contact you directly regarding a maintenance window or special update requirement.</p>
<p>Where a manual update is required, the update can be applied with:</p>
<pre><code>/scripts/upcp</code></pre>
<p><strong>Note for CentOS 6 or CloudLinux 6 systems:</strong> cPanel advises updating to the <strong>cl6110</strong> branch, version <strong>11.110.0.120</strong>, before manually updating.</p>
<p>We will continue monitoring this issue and will take any additional remediation steps as needed.</p>
<p><br /><strong>May 18, 2026</strong></p>
<p>Reliable Penguin has been notified by cPanel that a <strong>cPanel &amp; WHM security patch</strong> is expected to be released on <strong>Wednesday, May 20, 2026 at 8:00 AM Eastern Time</strong>.</p>
<p>According to cPanel, this release will address multiple vulnerabilities across several versions of cPanel &amp; WHM, including vulnerabilities rated up to <strong>High severity</strong>.</p>
<p>cPanel has stated that there are currently <strong>no known exploits or proof-of-concept code in the wild</strong>. Technical details are expected to be released alongside the patches.</p>
<p><strong>Affected Versions</strong></p>
<p>The following cPanel &amp; WHM versions are expected to be impacted:</p>
<ul>
<li>86</li>
<li>94</li>
<li>102</li>
<li>110</li>
<li>110 (CL6)</li>
<li>118</li>
<li>124</li>
<li>126</li>
<li>130</li>
<li>132</li>
<li>134</li>
<li>136</li>
<li>136 (WP2)</li>
</ul>
<p><strong>Reliable Penguin Response</strong></p>
<p>Reliable Penguin is reviewing managed cPanel &amp; WHM servers for affected versions and will apply the security update once it becomes available.</p>
<p>For servers managed by Reliable Penguin, <strong>no customer action is required at this time</strong> unless we contact you directly regarding a maintenance window or special update requirements.</p>
<p><strong>Next Steps</strong></p>
<p>We will continue monitoring the release and will provide an update once the patch is available and remediation work is underway.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Subscribe To RP News Now!]]></title>
<link><![CDATA[https://help.reliablepenguin.com/index.php?/News/NewsItem/View/92]]></link>
<guid isPermaLink="false"><![CDATA[92cc227532d17e56e07902b254dfad10]]></guid>
<pubDate><![CDATA[Sat, 16 May 2026 12:42:34 +0000]]></pubDate>
<dc:creator><![CDATA[Lee Blakely]]></dc:creator>
<description><![CDATA[Reliable Penguin is launching the RP News mailing list, a dedicated way for clients to stay informed about important updates from our team.
We encourage all Reliable Penguin clients to join the list so they can receive timely notices about:

Important sec...]]></description>
<content:encoded><![CDATA[<p>Reliable Penguin is launching the <strong>RP News mailing list</strong>, a dedicated way for clients to stay informed about important updates from our team.</p>
<p>We encourage all Reliable Penguin clients to join the list so they can receive timely notices about:</p>
<ul>
<li>Important security updates</li>
<li>Operational notices and service-related announcements</li>
<li>New Reliable Penguin product offerings</li>
<li>Opportunities, events, and other updates from our team</li>
</ul>
<p>Our goal is to make sure clients have a clear and reliable way to hear about information that may affect their websites, hosting, infrastructure, support, or services with Reliable Penguin.</p>
<div style="float: right; width: 540px; max-width: 100%; margin: 0 0 1.5rem 2rem; padding: 0.25rem; border: 1px solid #ddd; border-radius: 8px; background: #f8f8f8; box-sizing: border-box;"><iframe style="display: block; width: 100%; height: 380px; border: 0; max-width: 100%;" src="https://67ec6694.sibforms.com/serve/MUIFADHX4-XzyYcCOlK-NrcE2rA7N12m_Rk39i7wEVdxWNPNvJCfBFqadlaMMlQmO3BQzacqdxF3rmAnlfpK0urPgCPzhfR7324RMZdD2MpQOhEKX6ojRELT0xzZ2apFynbWZDTpBdzMFjostSM5IFq85cIW_s5iRXx-gtX8FiMGlLt06sMKtsiIACzwovdzzEFZxLApkELct9Af5A==" width="540" height="380" frameborder="0" scrolling="auto" allowfullscreen="allowfullscreen">
  </iframe></div>
<h2>Why join?</h2>
<p>RP News will help you stay ahead of important changes and opportunities. Some updates may be informational, while others may include security or operational details that are important for your organization to review.</p>
<p>By joining the mailing list, you can make sure the right people on your team receive these updates directly.</p>
<h2>Who should subscribe?</h2>
<p>We recommend that each client organization have at least one primary contact subscribed. Depending on your team, you may also want to include:</p>
<ul>
<li>Website administrators</li>
<li>IT or security contacts</li>
<li>Operations managers</li>
<li>Marketing or communications contacts</li>
<li>Anyone responsible for Reliable Penguin services within your organization</li>
</ul>
<h2>Join the RP News list</h2>
<p>Please use the signup form below to subscribe to the RP News mailing list and stay informed about Reliable Penguin updates, important notices, new offerings, and opportunities.</p>
<p>If you are unsure who from your organization should be subscribed, please contact Reliable Penguin support and we will be happy to help.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Security Notice: CVE-2026-42945 in nginx]]></title>
<link><![CDATA[https://help.reliablepenguin.com/index.php?/News/NewsItem/View/90]]></link>
<guid isPermaLink="false"><![CDATA[8613985ec49eb8f757ae6439e879bb2a]]></guid>
<pubDate><![CDATA[Fri, 15 May 2026 19:22:25 +0000]]></pubDate>
<dc:creator><![CDATA[Lee Blakely]]></dc:creator>
<description><![CDATA[Update - May 18, 2026
Plesk has released Plesk Obsidian 18.0.78 Update 1, which includes security improvements and updates nginx&nbsp;and the sw-cp-server&nbsp;service to version 1.30.1&nbsp;on Linux systems. Reliable Penguin is in the process of installi...]]></description>
<content:encoded><![CDATA[<p><strong>Update - May 18, 2026</strong></p>
<p>Plesk has released <strong>Plesk Obsidian 18.0.78 Update 1</strong>, which includes security improvements and updates <strong>nginx</strong>&nbsp;and the <strong>sw-cp-server</strong>&nbsp;service to version <strong>1.30.1</strong>&nbsp;on Linux systems. Reliable Penguin is in the process of installing this update across all managed client servers.&nbsp;</p>
<p>No customer action is required at this time. We will continue monitoring the rollout and will take any additional remediation steps as needed.</p>
<p><strong>Reference:</strong> https://docs.plesk.com/release-notes/obsidian/change-log/</p>
<p>&nbsp;</p>
<p><strong>May 15, 2026</strong></p>
<p>Reliable Penguin is aware of <strong>CVE-2026-42945</strong>, a vulnerability affecting certain nginx versions prior to <strong>1.31.1</strong> and <strong>1.30.1</strong>. The issue may allow denial of service in affected configurations, and remote code execution may be possible in limited circumstances.</p>
<p>This vulnerability may affect some Plesk-managed Linux systems depending on the installed nginx version and rewrite-rule configuration.</p>
<p>Reliable Penguin is actively reviewing managed systems for exposure to this issue. Our response includes checking nginx versions, reviewing potentially affected rewrite rules, confirming relevant system protections where applicable, and applying vendor-recommended mitigations or updates.</p>
<p>Reliable Penguin now follows an <strong>update-and-notify</strong>&nbsp;security maintenance model for managed systems. Under this policy, automatic security updates are enabled by default, and critical or high-priority security updates may be applied as soon as practical rather than waiting for a scheduled maintenance window. Clients are notified after updates that require or result in a system reboot, while routine service restarts generally do not trigger separate notifications.</p>
<p>For this nginx vulnerability, Reliable Penguin may apply mitigations or vendor patches without prior client approval when delaying action would create unnecessary security risk. <strong>No system reboots are required for the currently recommended mitigations or expected update.</strong>&nbsp;A brief nginx service restart or reload may occur as part of mitigation or patching, but this is considered routine security maintenance and will not typically trigger a separate notification.</p>
<p>Customers do not need to take action unless they manage their own nginx, Plesk, or server configuration outside of Reliable Penguin&rsquo;s managed services. Customers with self-managed systems should review vendor guidance, confirm whether affected nginx versions and rewrite rules are present, and apply the recommended update or mitigation.</p>
<p>We will continue monitoring vendor guidance and will update this notice as new information becomes available.</p>
<p><strong>Reference:</strong>&nbsp;<a href="https://support.plesk.com/hc/en-us/articles/40461457542807-Vulnerability-CVE-2026-42945-DoS-and-RCE-in-nginx-before-1-31-1-1-30-1" target="_blank">Plesk advisory for CVE-2026-42945</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Security Notice: CVE-2026-46333 in Linux]]></title>
<link><![CDATA[https://help.reliablepenguin.com/index.php?/News/NewsItem/View/89]]></link>
<guid isPermaLink="false"><![CDATA[7647966b7343c29048673252e490f736]]></guid>
<pubDate><![CDATA[Fri, 15 May 2026 16:35:26 +0000]]></pubDate>
<dc:creator><![CDATA[Lee Blakely]]></dc:creator>
<description><![CDATA[Security Notice:&nbsp;CVE-2026-46333 in Linux
Last updated: May 22, 2026
May 22, 2026
Additional technical details about CVE-2026-46333 have now been publicly disclosed, including reports describing local privilege escalation and potential disclosure of s...]]></description>
<content:encoded><![CDATA[<p><strong>Security Notice:&nbsp;CVE-2026-46333 in Linux</strong></p>
<p><strong>Last updated: May 22, 2026</strong></p>
<p><strong>May 22, 2026</strong></p>
<p>Additional technical details about CVE-2026-46333 have now been publicly disclosed, including reports describing local privilege escalation and potential disclosure of sensitive local files on affected Linux systems.</p>
<p>Reliable Penguin has completed review and remediation across client servers under our management. All client servers have either had available vendor patches installed or the recommended mitigation applied where a patch was not yet available.</p>
<p>We continue to monitor upstream vendor guidance and will apply any additional updates as they become available. No customer action is required at this time unless contacted directly by Reliable Penguin support.</p>
<p><strong>May 16, 2026</strong></p>
<p>CloudLinux and KernelCare have both released updates to address&nbsp;CVE-2026-46333. Alma Linxu has a patch in the testing channel which we expect to enter general distribution over the weekend.</p>
<p><strong>May 15, 2026</strong></p>
<p>Reliable Penguin is aware of CVE-2026-46333, a recently disclosed Linux kernel vulnerability involving `ptrace` access control logic.</p>
<p>We are monitoring guidance from the Linux kernel maintainers, CloudLinux, AlmaLinux, Ubuntu, Red Hat, KernelCare, and other relevant upstream vendors. As patched kernels and live patches become available from the appropriate upstream sources, we will apply updates across affected systems and perform any required reboots.</p>
<p>Consistent with Reliable Penguin&rsquo;s update-and-notify model, critical and high-priority security updates may be applied as soon as practical rather than waiting for a scheduled maintenance window. Clients with Enterprise level support plans will be notified when possible after updates that require or result in a system reboot. When practical, reboots will be performed between midnight and 6:00 AM Eastern Time, though urgent security conditions may require action outside that window.</p>
<p>No customer action is required at this time unless contacted directly by Reliable Penguin support.</p>
<p><strong>References</strong></p>
<p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46333">https://nvd.nist.gov/vuln/detail/CVE-2026-46333</a></p>
<p><a href="https://tuxcare.com/cve-tracker/cve/details/cve-2026-46333">https://tuxcare.com/cve-tracker/cve/details/cve-2026-46333</a></p>
<p><a href="https://almalinux.org/blog/2026-05-15-ssh-keysign-pwn-cve-2026-46333/">https://almalinux.org/blog/2026-05-15-ssh-keysign-pwn-cve-2026-46333/</a></p>
<p><a href="https://blog.cloudlinux.com/ptrace-exit-race-cve-2026-46333-mitigation-and-kernel-update">https://blog.cloudlinux.com/ptrace-exit-race-cve-2026-46333-mitigation-and-kernel-update</a></p>
<p><a href="https://lwn.net/Articles/1073060/">https://lwn.net/Articles/1073060/<br /><br /></a><a href="https://ubuntu.com/security/CVE-2026-46333">https://ubuntu.com/security/CVE-2026-46333</a><a href="https://lwn.net/Articles/1073060/"><br /></a></p>
<p><a href="https://thehackernews.com/2026/05/9-year-old-linux-kernel-flaw-enables.html">https://thehackernews.com/2026/05/9-year-old-linux-kernel-flaw-enables.html</a></p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p>&nbsp;</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Managed Domain Registrar]]></title>
<link><![CDATA[https://help.reliablepenguin.com/index.php?/News/NewsItem/View/87]]></link>
<guid isPermaLink="false"><![CDATA[c7e1249ffc03eb9ded908c236bd1996d]]></guid>
<pubDate><![CDATA[Tue, 11 Jun 2024 08:54:50 +0000]]></pubDate>
<dc:creator><![CDATA[Lee Blakely]]></dc:creator>
<description><![CDATA[Reliable Penguin offers fully Managed Domain Registrar services including new registrations and transfers. Domain registration and transfers are mission critical and can be confusing but our team will handle all the technical details to register or transf...]]></description>
<content:encoded><![CDATA[<p>Reliable Penguin offers fully Managed Domain Registrar services including new registrations and transfers. Domain registration and transfers are mission critical and can be confusing but our team will handle all the technical details to register or transfer a domain allowing you to focus on your business.</p>
<p>Benefits of our Managed Domain Registrar service include:</p>
<ul>
<li>Support from our friendly, competent and experienced engineers including managed inbound domain transfers for seamless transitions.</li>
<li>Domain registration via our OpenSRS partnership with guaranteed ICANN compliance including automated registrant validation and expiration reminder emails.</li>
<li>Domain Name Service (DNS) hosted on Reliable Penguin&rsquo;s ultra-reliable platform built on Amazon Web Services.</li>
<li>Automatic domain renewals to avoid accidental expirations.</li>
<li>Optional domain contact privacy to keep your personal information confidential.</li>
</ul>
<p>Effective July 1, 2024, the following rates will apply to all new domain registrations, renewals and transfers of existing domains.</p>
<table style="width: 33%; margin-left: auto; margin-right: auto;" border="1" cellspacing="0" cellpadding="10">
<thead>
<tr style="text-align: center;">
<td><strong>Top Level Domain (TLD)</strong></td>
<td><strong>Per Year</strong></td>
</tr>
</thead>
<tbody>
<tr>
<td>.com</td>
<td>$29.00</td>
</tr>
<tr>
<td>.net</td>
<td>$33.00</td>
</tr>
<tr>
<td>.org</td>
<td>$30.00</td>
</tr>
<tr>
<td>.biz</td>
<td>$40.00</td>
</tr>
<tr>
<td>.info</td>
<td>$47.00</td>
</tr>
</tbody>
</table>
<p>Reliable Penguin can provide registration for any of over 700 popular gTLDs and ccTLD. Contact support for pricing for additional top level domains.</p>
<p>The optional Domain Contact Privacy feature is available for an additional $5/year per domain.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Netgate pfSense Price Updates]]></title>
<link><![CDATA[https://help.reliablepenguin.com/index.php?/News/NewsItem/View/86]]></link>
<guid isPermaLink="false"><![CDATA[93db85ed909c13838ff95ccfa94cebd9]]></guid>
<pubDate><![CDATA[Tue, 28 May 2024 09:44:44 +0000]]></pubDate>
<dc:creator><![CDATA[Lee Blakely]]></dc:creator>
<description><![CDATA[Netgate has announced price changes for the "Netgate pfSense Plus Firewall/VPN/Router" licenses purchased through the AWS Marketplace. ate pfSense Plus Firewall/VPN/Router". The previous and new per hour prices are as follows:
t2.small - Previous: 0.08 / ...]]></description>
<content:encoded><![CDATA[<p>Netgate has announced price changes for the "Netgate pfSense Plus Firewall/VPN/Router" licenses purchased through the AWS Marketplace. ate pfSense Plus Firewall/VPN/Router". The previous and new per hour prices are as follows:</p>
<p>t2.small - Previous: 0.08 / New: 0.12<br />t3.micro - Previous: 0.08 / New: 0.12<br />t2.micro - Previous: 0.08 / New: 0.12<br />t3.small - Previous: 0.08 / New: 0.12<br />t2.large - Previous: 0.08 / New: 0.12<br />t3.nano - Previous: 0.02 / New: 0.04<br />t3a.nano - Previous: 0.02 / New: 0.04<br />t3a.medium - Previous: 0.08 / New: 0.12<br />t3a.small - Previous: 0.08 / New: 0.12<br />t2.medium - Previous: 0.08 / New: 0.12</p>
<p>For the typical customer this change will result in a $30/most increase in AWS cost. This change takes on July 1st, 2024.</p>
<p>Email <a href="mailto:support@reliablepenguin.com">support@reliablepenguin.com</a>&nbsp;with any questions.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Plesk Price Updates]]></title>
<link><![CDATA[https://help.reliablepenguin.com/index.php?/News/NewsItem/View/85]]></link>
<guid isPermaLink="false"><![CDATA[3ef815416f775098fe977004015c6193]]></guid>
<pubDate><![CDATA[Sun, 18 Feb 2024 13:31:48 +0000]]></pubDate>
<dc:creator><![CDATA[Lee Blakely]]></dc:creator>
<description><![CDATA[Plesk is the most advanced web hosting control panel in the industry. For over 15 years, Reliable Penguin, has provided Plesk on many of our hosting solutions. Reliable Penguin is a Silver Level Plesk Partner and as such are able to offer discounted rates...]]></description>
<content:encoded><![CDATA[<p>Plesk is the most advanced web hosting control panel in the industry. For over 15 years, Reliable Penguin, has provided Plesk on many of our hosting solutions. Reliable Penguin is a Silver Level Plesk Partner and as such are able to offer discounted rates on Plesk to our client. Unfortunately the cost for Plesk licenses has increased over the last year. Effective March 1st, 2024, Reliable Penguin will offer Plesk at the following new rates:</p>
<table style="height: 158px; width: 563px;" border="2" width="563">
<tbody>
<tr>
<td><strong>Edition</strong></td>
<td><strong>Monthly</strong></td>
<td><strong>Savings</strong></td>
<td><strong>Annual</strong></td>
<td><strong>Savings</strong></td>
</tr>
<tr>
<td>Host Edition - Dedicated</td>
<td>$62.00</td>
<td>7.5%</td>
<td>$682.00</td>
<td>15%</td>
</tr>
<tr>
<td>Host&nbsp;Edition - VPS</td>
<td>$37.50</td>
<td>7.5%</td>
<td>$412.50</td>
<td>15%</td>
</tr>
<tr>
<td>Pro Edition - Dedicated</td>
<td>$21.75</td>
<td>7.5%&nbsp;</td>
<td>$239.25&nbsp;</td>
<td>15%&nbsp;</td>
</tr>
<tr>
<td>Pro Edition - VPS</td>
<td>$21.75&nbsp;</td>
<td>7.5%&nbsp;</td>
<td>$239.25&nbsp;</td>
<td>15%&nbsp;</td>
</tr>
<tr>
<td>Admin Edition - Dedicated</td>
<td>$14.25&nbsp;</td>
<td>7.5%&nbsp;</td>
<td>$156.75&nbsp;</td>
<td>15%&nbsp;</td>
</tr>
<tr>
<td>Admin Edition - VPS</td>
<td>$14.25&nbsp;</td>
<td>7.5%&nbsp;</td>
<td>$156.75&nbsp;</td>
<td>15%&nbsp;</td>
</tr>
<tr>
<td>Power Pack</td>
<td>$13.99</td>
<td>7.0%</td>
<td>$153.89</td>
<td>15%</td>
</tr>
</tbody>
</table>
<p>By purchasing from Reliable Penguin you can save at least 7.5% on monthly licenses and over 15% on annual licenses.</p>
<p>Please contact Reliable Penguin with questions or to order new licenses.&nbsp;</p>
<p>&nbsp;</p>
<p>&nbsp;</p>]]></content:encoded>
</item>
</channel>
</rss>