New on LowEndTalk? Please Register and read our Community Rules.
All new Registrations are manually reviewed and approved, so a short delay after registration may occur before your account becomes active.
All new Registrations are manually reviewed and approved, so a short delay after registration may occur before your account becomes active.
URGENT: Virtualizor Compromised (31st AUG)
Jamie_DreamIT
Member, Host Rep
in Providers
Virtualizor has been compromised, their BGP hijack a few days ago seems to have a deployed a malicious package.
- RESET/LIMIT ALL API CREDENTIALS IN THE VIRT MASTER PANEL BY IP
- CHECK FOR SUSPICIOUS KEYS AND ENSURE SSH IS LOCKED DOWN
- CHECK IF THIS FILE EXISTS ( /etc/systemd/system/java-jre-update.service )
If you're an affected host, NOC or provider and would want to work together, please DM me, we'll appreciate any assistance here.
Comms are being sent for existing customers, at this stage, we don't see evidence of VPS's being compromised.
Good luck to other providers out there.
Comments
I stopped using virtualizor many years ago, i don't think anyone should use them commercially
List of our providers that use Virtualizor:
I honestly cannot understand why anyone would even consider using virtualizor in 2026, it is literally paying to disadvantage your business in every conceivable way.
Bad support, bad practices, bad software, a complete and total mess of a UI, terrible UX, supports literally everything but badly in the most limited way possible, multiple security issues and about $3 cheaper than VirtFusion.
Even more crazy when you consider VirtFusion offer migration services.
Since when?
fucking Virtualizor
Fuck
Is there a statement from Virtualizor?