59
Distro versions supported
CloudLinux + Imunify360 for VPS providers
KernelCare keeps your infrastructure secure while your customers’ sites stay online. No maintenance windows, no late-night patching, no explaining downtime.
59
Distro versions supported
10,762
Linux kernels supported
5,364
Vulnerabilities addressed
269,100
Live patches released
Live kernel patching applies security fixes instantly — without reboots or maintenance windows.
New vulnerability is disclosed
KernelCare team develops the fix
Server stays running
Vulnerability fixed, customers unaffected
GETTING STARTED
Run one command as root to deploy the lightweight KernelCare agent on your server.
$ curl -s https://repo.cl/kcare | bash
KernelCare checks for new patches every 4 hours and applies them to the running kernel — no reboots or maintenance windows.
Track patch status, vulnerability exposure, and risk across your fleet from one dashboard.
Learn more about RadarTry KernelCare on your infrastructure. See what it’s like when kernel security updates stop being a coordination problem and start being automatic.
Contact us for a 14-day trial.
Common questions from hosting providers evaluating KernelCare
KernelCare is a live kernel patching solution that applies security updates in memory without requiring server reboots. For hosting providers, this means kernel CVEs get patched immediately while customer sites stay online — no maintenance windows, no downtime, no coordination headaches.
Yes. Live kernel patching has been production-proven for over a decade. KernelCare has applied hundreds of thousands of patches across millions of servers with the reliability you'd expect from traditional patching. Every patch undergoes rigorous QA before release, and instant rollback is available if needed.
For kernel security patches, correct, no reboots required. Other updates like glibc or major OS upgrades may still require restarts, but those are far less frequent. Most hosting providers using KernelCare reduce their reboot frequency by 90% or more.
Patches typically deploy within hours of CVE disclosure, often before attackers have time to develop working exploits. This shrinks the vulnerability window from weeks (waiting for a maintenance window) to hours, significantly reducing your exposure to emerging threats.
KernelCare supports instant rollback without rebooting. If you encounter an issue with a patch, revert to the previous kernel state in seconds, diagnose the problem, and apply a fix when ready. This safety net exists, though it's rarely needed given the QA process patches undergo.
KernelCare pricing starts at $3.95 per server per month, with volume discounts available for larger fleets. When you calculate the cost of a single hour of downtime, or the engineer hours spent coordinating maintenance windows, the ROI is typically immediate and significant.