Howdy, Stranger!

It looks like you're new here. If you want to get involved, click one of these buttons!


Shells Virtual Desktop
BMail.ag - Secure Email Service
Server.net
CPLicense.net
VPS Server
Buy VPN
Vultr
VMs for AI
HostDare
ReliableSite White-Label Dedicated Hosting for Resellers
InterServer VPS
BMail.ag - Secure Email Service
Best VPN
High-Performance Bare Metal Server Solutions
Karvl.com
Server Mania Cloud Hosting
DataWagon Hosting
AlphaVPS Hosting
Evoxt.com
Clouvider
VPS Hosting with NVMe
Residential IPs in the US & 4G Mobile Proxies in EU & US with Unlimited Bandwidth
ReliableSite White-Label Dedicated Hosting for Resellers
Rabisu - Hosting Solutions
Shells Virtual Desktop
New on LowEndTalk? Please Register and read our Community Rules.

All new Registrations are manually reviewed and approved, so a short delay after registration may occur before your account becomes active.

ColoCrossing Database Breach

1262729313239

Comments

  • servarica_haniservarica_hani Member, Patron Provider
    edited May 2025

    For other Providers and other sellers here

    Review all orders done since 25th
    We found out a couple of the account got accessed by same person who made orders from those users accounts

    So users started going through the leaked DB and they are trying the passwords on all known VPS hosts hoping users used the same password and they got lucky on some accounts

  • lirrrlirrr Member

    imagine not using password manager

  • @servarica_hani said:
    For other Providers and other sellers here

    Review all orders done since 25th
    We found out a couple of the account got accessed by same person who made orders from those users accounts

    So users started going through the leaked DB and they are trying the passwords on all known VPS hosts hoping users used the same password and they got lucky on some accounts

    In other words, always use a password manager with random passwords.

  • analoganalog Member

    My passwords are so secure I dont even know them!

    Thanked by 1default
  • raindog308raindog308 Administrator, Veteran
  • MannDudeMannDude Patron Provider, Veteran

    Has any official release from CC been published anywhere? What has their support staff said when asked via the helpdesk?

  • sh97sh97 Member, Host Rep

    @MannDude said:
    Has any official release from CC been published anywhere? What has their support staff said when asked via the helpdesk?

    Based on the posts on NodeSeek, ddr ignor

    Thanked by 2geo lukast__
  • LeviLevi Member
    edited May 2025

    @MannDude said: What has their support staff said when asked via the helpdesk?

    Canned response:

    Hello,
    We apologize for the delay and any inconvenience caused.
    Your VPS should now be back online. We will be following up shortly with a detailed update via email regarding the recent outage.
    If your VPS appears to still be down, please try rebooting it from the control panel. If the issue persists after a reboot, don’t hesitate to reply to this ticket so we can investigate further.

    Panel is disabled, VPS control available only via WHMCS.

    Thanked by 1MannDude
  • sixsix Member

    Looks like a few of my servers got deleted:
    "User ID not found, please report to the Administrator to verify if your VPS has a valid User assigned to it or not"

  • iKeyZiKeyZ Veteran

    @MannDude said:
    Has any official release from CC been published anywhere? What has their support staff said when asked via the helpdesk?

    Only the one posted earlier (below). Nothing else so far.

  • Ed_ChdEd_Chd Member

    @ouiheberg said:

    @unsafetypin said:

    @ouiheberg said:

    @unsafetypin said:
    anyways...refugee deals when?

    Hi,

    I’m offering 50% off on VPS servers in New York with the promo code: lowendtalk50
    This offer has no time limit.

    Website link: https://www.ouiheberg.com/en/linux-vps-server

    are you french?

    Yes I know we're not very liked by Americans right now. :)"

    Any deals on the French slices coming this year? XD

  • defaultdefault Veteran

    A vulnerable server at ColoCrossing would be great as honeypot, using the passwords from from that leaked database.

  • plumbergplumberg Veteran, Megathread Squad

    Is there a repo somewhere to check if I have been compromised?

  • @plumberg said:
    Is there a repo somewhere to check if I have been compromised?

    Just assume you have. If you have a VPS from colocrossing just play it safe, change password and probably reinstall the OS.

  • zedzed Member

    @zed said: Day 4

    Day 5?

  • RubbenRubben Member

    @zed said:

    @zed said: Day 4

    Day 5?

    CockCrossing not addressing this major security breach should be a major red flag for anyone considering any services from them.

  • VoidVoid Member

    it s possible give ColoCockRing server

    port 25 open source
    deepfake allow
    bot net allow
    illegal porn allow
    phishishing allow
    DDR4 igor
    DDoS free

    Reguards

  • defaultdefault Veteran

    @Void said:
    it s possible give ColoCockRing server

    port 25 open source
    deepfake allow
    bot net allow
    illegal porn allow
    phishishing allow
    DDR4 igor
    DDoS free

    Reguards

    With such good specs on that offer, I am afraid to ask about the ColoCockLock server.

    Thanked by 2oloke Void
  • plumbergplumberg Veteran, Megathread Squad

    @Void said:
    it s possible give ColoCockRing server

    port 25 open source
    deepfake allow
    bot net allow
    illegal porn allow
    phishishing allow
    DDR4 igor
    DDoS free

    Reguards

    Need ddr5

  • plumbergplumberg Veteran, Megathread Squad

    @Kevinf100 said:

    @plumberg said:
    Is there a repo somewhere to check if I have been compromised?

    Just assume you have. If you have a VPS from colocrossing just play it safe, change password and probably reinstall the OS.

    Haven't gone through 28 pages of gold content here.
    If I am reading right, its only impacting cloud customers and not dedicated server customers?

  • MannDudeMannDude Patron Provider, Veteran

    @plumberg said:

    @Kevinf100 said:

    @plumberg said:
    Is there a repo somewhere to check if I have been compromised?

    Just assume you have. If you have a VPS from colocrossing just play it safe, change password and probably reinstall the OS.

    Haven't gone through 28 pages of gold content here.
    If I am reading right, its only impacting cloud customers and not dedicated server customers?

    Yeah, seems to be isolated to only their Virtual Servers "cloud" product and their resellers who use the same panel like HVH or whoever.

    Thanked by 1plumberg
  • RubbenRubben Member

    @MannDude said:

    @plumberg said:

    @Kevinf100 said:

    @plumberg said:
    Is there a repo somewhere to check if I have been compromised?

    Just assume you have. If you have a VPS from colocrossing just play it safe, change password and probably reinstall the OS.

    Haven't gone through 28 pages of gold content here.
    If I am reading right, its only impacting cloud customers and not dedicated server customers?

    Yeah, seems to be isolated to only their Virtual Servers "cloud" product and their resellers who use the same panel like HVH or whoever.

    Ok, but here's the thing. If this was really a human error on CC's part, would you trust them with anything in the future? Because personally, I wouldn't trust even if they said 'good morning'

    Thanked by 1beanman109
  • VoidVoid Member

    @plumberg said:

    @Void said:
    it s possible give ColoCockRing server

    port 25 open source
    deepfake allow
    bot net allow
    illegal porn allow
    phishishing allow
    DDR4 igor
    DDoS free

    Reguards

    Need ddr5

    hallo ddr5 fix next week

    Thanked by 1plumberg
  • LeviLevi Member

    Ddr6. When.

    Thanked by 1plumberg
  • plumbergplumberg Veteran, Megathread Squad

    @Levi said:
    Ddr6. When.

    Before ddr7

    Thanked by 1barbarza
  • defaultdefault Veteran

    @Rubben said:

    @MannDude said:

    @plumberg said:

    @Kevinf100 said:

    @plumberg said:
    Is there a repo somewhere to check if I have been compromised?

    Just assume you have. If you have a VPS from colocrossing just play it safe, change password and probably reinstall the OS.

    Haven't gone through 28 pages of gold content here.
    If I am reading right, its only impacting cloud customers and not dedicated server customers?

    Yeah, seems to be isolated to only their Virtual Servers "cloud" product and their resellers who use the same panel like HVH or whoever.

    Ok, but here's the thing. If this was really a human error on CC's part, would you trust them with anything in the future? Because personally, I wouldn't trust even if they said 'good morning'

    Good Morning! I really hope you have a wonderful day. I am not ColoCrossing, so I hope you trust me.

  • plumbergplumberg Veteran, Megathread Squad

    @default said:

    @Rubben said:

    @MannDude said:

    @plumberg said:

    @Kevinf100 said:

    @plumberg said:
    Is there a repo somewhere to check if I have been compromised?

    Just assume you have. If you have a VPS from colocrossing just play it safe, change password and probably reinstall the OS.

    Haven't gone through 28 pages of gold content here.
    If I am reading right, its only impacting cloud customers and not dedicated server customers?

    Yeah, seems to be isolated to only their Virtual Servers "cloud" product and their resellers who use the same panel like HVH or whoever.

    Ok, but here's the thing. If this was really a human error on CC's part, would you trust them with anything in the future? Because personally, I wouldn't trust even if they said 'good morning'

    Good Morning! I really hope you have a wonderful day. I am not ColoCrossing, so I hope you trust me.

    Why

  • RubbenRubben Member

    @default said:

    @Rubben said:

    @MannDude said:

    @plumberg said:

    @Kevinf100 said:

    @plumberg said:
    Is there a repo somewhere to check if I have been compromised?

    Just assume you have. If you have a VPS from colocrossing just play it safe, change password and probably reinstall the OS.

    Haven't gone through 28 pages of gold content here.
    If I am reading right, its only impacting cloud customers and not dedicated server customers?

    Yeah, seems to be isolated to only their Virtual Servers "cloud" product and their resellers who use the same panel like HVH or whoever.

    Ok, but here's the thing. If this was really a human error on CC's part, would you trust them with anything in the future? Because personally, I wouldn't trust even if they said 'good morning'

    Good Morning! I really hope you have a wonderful day. I am not ColoCrossing, so I hope you trust me.

    閉嘴

  • lirrrlirrr Member

    hello i need ipv10 possible to giv?

    Thanked by 1nghialele
Sign In or Register to comment.