Yeah, cPanel's jailed ssh features aren't completely secure. I've had a shared cPanel hosting account once in the past where I was provided with jailed ssh access. Maybe they didn't set up their jailed ssh environment properly, though, since I found I was able to access stuff that I shouldn't have been able to access, and that was all by accident. Really, it was an accident. >_<
Personally, I find giving ssh access to customers in shared hosting to be too much of a risk. VPS or dedis are a different story, though.
__________________
~ squishy squishy ~
|