Howdy, Stranger!

It looks like you're new here. If you want to get involved, click one of these buttons!


Shells Virtual Desktop
BMail.ag - Secure Email Service
Server.net
CPLicense.net
VPS Server
Buy VPN
Vultr
VMs for AI
HostDare
ReliableSite White-Label Dedicated Hosting for Resellers
InterServer VPS
BMail.ag - Secure Email Service
Best VPN
High-Performance Bare Metal Server Solutions
Karvl.com
Server Mania Cloud Hosting
DataWagon Hosting
AlphaVPS Hosting
Evoxt.com
Clouvider
Godlike VPS
VPS Hosting with NVMe
Residential IPs in the US & 4G Mobile Proxies in EU & US with Unlimited Bandwidth
ReliableSite White-Label Dedicated Hosting for Resellers
Shells Virtual Desktop
New on LowEndTalk? Please Register and read our Community Rules.

All new Registrations are manually reviewed and approved, so a short delay after registration may occur before your account becomes active.

ColoCrossing Database Breach

1111214161739

Comments

  • raindog308raindog308 Administrator, Veteran

    @wadhah said: Yeah ColoCrossing owns LowEndTalk and LowEndBox,

    Not true. CC used to own LET/LEB, but @jbiloh bought it years ago and owns it personally. CC has nothing to do with the administration of LET/LEB, and neither site runs on CC infrastructure./

    @wadhah said: @jbiloh is an employee of CC

    Also untrue. CC is owned by HostPapa and Jon does consulting for the latter.

    @wadhah said: and the admin of LET

    This much is true.

  • raindog308raindog308 Administrator, Veteran

    Weird...I didn't get an email. I have a dedi on the portal side (which seems to be operating normally), and while I don't have a VM currently on the cloud side, I have in the past and am certainly registered there.

  • @mateolee said:
    Notice they have not contacted us in any way. If they were worried about the users' data, they would have at least written us a hello. But they didn't.

  • mateoleemateolee Member
    edited May 2025

    @iceman said:

    @mateolee said:

    @iceman said:

    @mateolee said:
    Hi everyone, we want to clarify the situation with ColoCrossing, the most important reason for all this is that the administration ignores illegal content on their servers such as:
    Child pornography, carding, phishing, Botnets, Swatting software, Rat software, DeepFakes. And the like.

    Now think about it. They didn't choose to reach out after being informed of the situation. They chose to make the situation worse

    So, you choose to hack them because they had child porn and other shits, but if they have had paid you 10k you were ok then? What a fucking motherf*cker!

    Don't blame us, colocrossing is no better than we are.

    Just get the fuck out of here you moron, there are authorities who would take care of this if you care too much about all of what they provide! But no, you choose to hack them because of money. Just go kill yourself!

    Colocrossing has been running for 22 years(according to google), and the servers where this illegal content was hosted for about a year without interruption, do you think someone is solving these problems? Given that the servers with illegal content have been hosted for years without interruption - no, no one is interested in it

  • tentortentor Member, Host Rep

    @mateolee said:

    @iceman said:

    @mateolee said:

    @iceman said:

    @mateolee said:
    Hi everyone, we want to clarify the situation with ColoCrossing, the most important reason for all this is that the administration ignores illegal content on their servers such as:
    Child pornography, carding, phishing, Botnets, Swatting software, Rat software, DeepFakes. And the like.

    Now think about it. They didn't choose to reach out after being informed of the situation. They chose to make the situation worse

    So, you choose to hack them because they had child porn and other shits, but if they have had paid you 10k you were ok then? What a fucking motherf*cker!

    Don't blame us, colocrossing is no better than we are.

    Just get the fuck out of here you moron, there are authorities who would take care of this if you care too much about all of what they provide! But no, you choose to hack them because of money. Just go kill yourself!

    Colocrossing работает уже 22 года (по данным google), а сервера, на которых этот нелегальный контент размещался около года без перерыва, как вы думаете, кто-то решает эти проблемы? Учитывая, что сервера с нелегальным контентом размещаются годами без перерыва - нет, это никого не интересует

    whaaa

    Thanked by 2sillycat borkedascii
  • @adanforest said:

    @mateolee said:
    Notice they have not contacted us in any way. If they were worried about the users' data, they would have at least written us a hello. But they didn't.

    They sent out a message claiming they had "resolved" something, but they didn’t even try to contact us. They haven’t resolved anything — they just temporarily disabled the panels.

  • @mateolee said:
    Notice they have not contacted us in any way. If they were worried about the users' data, they would have at least written us a hello. But they didn't.

    Businesses engaging in negotiation with hackers can raise serious ethical and legal questions. Giving in to extortion can also complicate the situation.

    Thanked by 2tentor oloke
  • @Maelstrom36 said:

    @mateolee said:
    Notice they have not contacted us in any way. If they were worried about the users' data, they would have at least written us a hello. But they didn't.

    Businesses engaging in negotiation with hackers can raise serious ethical and legal questions. Giving in to extortion can also complicate the situation.

    They didn't even try, at least they could have at least asked our requests, maybe we would have agreed on something other than money

  • VoidVoid Member

    @Neoon said:

    @Grentenville said:
    It appears that they are starting to delete VMs, as per their telegram channel?

    What?!

    Could be true, mine went down as per monitoring.

  • timmmytimmmy Member

    some weasel level fuckery right here

  • defaultdefault Veteran
    edited May 2025
  • zGatozGato Member
    edited May 2025

    what a fucking shitshow, I'm literally seeing my VMs go in front of my own eyes
    Both DUB nodes:

    For their only node in Chicago (as far as I'm aware)

    Same with Texas

  • There goes my Dublin VPS, rip

    Thanked by 1zGato
  • tentortentor Member, Host Rep
    edited May 2025

    To be fair it is still not known for sure if credentials were leaked (human error) or a Virtualizor bug

  • my vps is gone too.

    Thanked by 1vastness4594
  • zGatozGato Member

    @tentor said:

    To be fair it is still not known for sure if credentials were leaked (human error) or a Virtualizor bug

    Only thing we know is that they still have access, despite @ColoCrossing claims, which is just fucking insane.

  • @mateolee said:

    @Maelstrom36 said:

    @mateolee said:
    Notice they have not contacted us in any way. If they were worried about the users' data, they would have at least written us a hello. But they didn't.

    Businesses engaging in negotiation with hackers can raise serious ethical and legal questions. Giving in to extortion can also complicate the situation.

    They didn't even try, at least they could have at least asked our requests, maybe we would have agreed on something other than money

    Engaging with hackers can encourage further criminal activity and reinforces the cycle of threats and extortion.

    Thanked by 1tentor
  • @zGato said:

    @tentor said:

    To be fair it is still not known for sure if credentials were leaked (human error) or a Virtualizor bug

    Only thing we know is that they still have access, despite @ColoCrossing claims, which is just fucking insane.

    That's what we're talking about. They're dusting your eyes to pretend there's no leak and so on.

  • timmmytimmmy Member

    founder of LET is long gone from the forum

  • sh97sh97 Member, Host Rep

    My Dublin VM is nuked I guess 🥲🥲

    Thanked by 2lukast__ nghialele
  • defaultdefault Veteran

    @zGato said:

    @tentor said:

    To be fair it is still not known for sure if credentials were leaked (human error) or a Virtualizor bug

    Only thing we know is that they still have access, despite @ColoCrossing claims, which is just fucking insane.

    They could simply go inside the datacenter and pull out the cables from servers, then try to rescue from backups or something.

  • mateoleemateolee Member
    edited May 2025

    @default said:

    @zGato said:

    @tentor said:

    To be fair it is still not known for sure if credentials were leaked (human error) or a Virtualizor bug

    Only thing we know is that they still have access, despite @ColoCrossing claims, which is just fucking insane.

    They could simply go inside the datacenter and pull out the cables from servers, then try to rescue from backups or something.

    We want to disappoint you, ColoCrossing does not have any backups, they only did backups of admin servers and master database. They have never backed up the client servers.

  • NeoonNeoon Community Contributor, Veteran

    @zGato said:
    what a fucking shitshow, I'm literally seeing my VMs go in front of my own eyes
    Both DUB nodes:

    For their only node in Chicago (as far as I'm aware)

    Same with Texas

    Any refugee deals, without Shitolizor?

  • @zGato said:

    @tentor said:

    To be fair it is still not known for sure if credentials were leaked (human error) or a Virtualizor bug

    Only thing we know is that they still have access, despite @ColoCrossing claims, which is just fucking insane.

    I guess they couldn't turn the power off.

  • @mateolee said:

    @Maelstrom36 said:

    @mateolee said:
    Notice they have not contacted us in any way. If they were worried about the users' data, they would have at least written us a hello. But they didn't.

    Businesses engaging in negotiation with hackers can raise serious ethical and legal questions. Giving in to extortion can also complicate the situation.

    They didn't even try, at least they could have at least asked our requests, maybe we would have agreed on something other than money

    I am not sure what your requests are. But at this point, you already leaked their full customer DB that contains personal information. You accessed to every or almost every VM on their nodes, added files to people's VPS.

    IF they give you X amount of money or whatever you ask for, do you think everyone will act like nothing happened?

    All of CC's customer data and VPS nodes are exposed, there is zero trust to you (no offence) or to CC from their customers.

    Only action that can be taken right now as their customers is to destroy VMs and change provider. There is no guarantee that the VMs are not infected or ransomwared. You can't just take out data from those VPS and use it at a different VPS.

    So I doubt anyone will get in contact with you to give you money or whatever you are wanting at this point. That leverage is long gone when you announced that you got into their servers.

  • @barbaros said:

    @mateolee said:

    @Maelstrom36 said:

    @mateolee said:
    Notice they have not contacted us in any way. If they were worried about the users' data, they would have at least written us a hello. But they didn't.

    Businesses engaging in negotiation with hackers can raise serious ethical and legal questions. Giving in to extortion can also complicate the situation.

    They didn't even try, at least they could have at least asked our requests, maybe we would have agreed on something other than money

    I am not sure what your requests are. But at this point, you already leaked their full customer DB that contains personal information. You accessed to every or almost every VM on their nodes, added files to people's VPS.

    IF they give you X amount of money or whatever you ask for, do you think everyone will act like nothing happened?

    All of CC's customer data and VPS nodes are exposed, there is zero trust to you (no offence) or to CC from their customers.

    Only action that can be taken right now as their customers is to destroy VMs and change provider. There is no guarantee that the VMs are not infected or ransomwared. You can't just take out data from those VPS and use it at a different VPS.

    So I doubt anyone will get in contact with you to give you money or whatever you are wanting at this point. That leverage is long gone when you announced that you got into their servers.

    We don't need anything anymore. If Colocrossing decided to give a damn about customer data, they didn't contact us in the first place. They had 24 hours, no one dared to check anything.

  • VoidVoid Member
    edited May 2025

    @mateolee said:

    @default said:

    @zGato said:

    @tentor said:

    To be fair it is still not known for sure if credentials were leaked (human error) or a Virtualizor bug

    Only thing we know is that they still have access, despite @ColoCrossing claims, which is just fucking insane.

    They could simply go inside the datacenter and pull out the cables from servers, then try to rescue from backups or something.

    We want to disappoint you, ColoCrossing does not have any backups, they only did backups of admin servers and master database. They have never backed up the client servers.

    So the messenger is an old and inactive account, probably hacked too. Boi ain’t that familiar 😐

    Thanked by 1itzgeo
  • NeoonNeoon Community Contributor, Veteran

    @Void said:
    @mateolee said:

    @default said:

    @zGato said:

    @tentor said:

    To be fair it is still not known for sure if credentials were leaked (human error) or a Virtualizor bug

    Only thing we know is that they still have access, despite @ColoCrossing claims, which is just fucking insane.

    They could simply go inside the datacenter and pull out the cables from servers, then try to rescue from backups or something.

    We want to disappoint you, ColoCrossing does not have any backups, they only did backups of admin servers and master database. They have never backed up the client servers.

    So the messenger is an old and inactive account, probably hacked too. Boi ain’t that familiar 😐

    They sell Telegram accounts like Hotcakes and anything else, pretty sure they are selling LET accounts too.

    Thanked by 1Void
Sign In or Register to comment.