烧饼论坛 LZ.SB
登录

又一起 Virtualizor 入侵事件(预警:8 月 31 日)/ Yet another Virtualizor hack (early warning: 31-08)

532
  • notoloker
    UID 3437Lv.2 新手上路认证商家商家onidel.com

    近日,Virtualizor 成为了 BGP 劫持攻击 的目标,该攻击影响了其许可证服务器,并向其客户推送了钓鱼内容。
    今天早些时候,一家托管服务商 报告 称,其 Virtualizor 实例因一个恶意更新包而遭到入侵。

    目前尚无关于此次事件影响范围的进一步细节,且没有迹象表明客户数据受到影响。截至目前,这似乎是一起孤立的入侵事件。

    话虽如此,建议您确保对托管在使用 Virtualizor 的提供商上的所有重要数据都有最新的备份。
    该列表包括但不限于以下提供商:


    In recent days, Virtualizor has been a target of BGP hijacking attack affecting their license server and serving phishing to their clients.
    Earlier today, a hosting provider reported that their Virtualizor instance have been compromised by a malicious update package.
    There is no further details on the scale of incident and no signs of customer data being affected. As of now, this appears to be an isolated case of compromise.

    That said, it could be wise to ensure you have up-to-date backups of any important data hosted on providers using Virtualizor.
    The list includes but is not limited to:

    • dedirock
    • solidvps
    • hosteroid
    • host4fun
    • strike.bz
    • sitehub
    • digirdp
    • rarecloud
    • virtono
    • littlecreek
    • chunkserve
    • naranjatech
  • 收藏支持 1反对打赏

2 条回复

  • etuos
    UID 661Lv.3 初识社区
    亮了 1#1

    AI 挖洞大赛

  • Hitori0221
    UID 3266Lv.3 初识社区
    亮了 1#2

    自从有了大模型之后,找漏洞的门槛低太多了

发表回复