Howdy, Stranger!

It looks like you're new here. If you want to get involved, click one of these buttons!


Shells Virtual Desktop
BMail.ag - Secure Email Service
Server.net
CPLicense.net
VPS Server
Buy VPN
Vultr
VMs for AI
HostDare
ReliableSite White-Label Dedicated Hosting for Resellers
InterServer VPS
BMail.ag - Secure Email Service
Best VPN
High-Performance Bare Metal Server Solutions
Karvl.com
Server Mania Cloud Hosting
DataWagon Hosting
AlphaVPS Hosting
Evoxt.com
Clouvider
Godlike VPS
VPS Hosting with NVMe
Residential IPs in the US & 4G Mobile Proxies in EU & US with Unlimited Bandwidth
ReliableSite White-Label Dedicated Hosting for Resellers
Shells Virtual Desktop
New on LowEndTalk? Please Register and read our Community Rules.

All new Registrations are manually reviewed and approved, so a short delay after registration may occur before your account becomes active.

OuiHeberg Security Breach

loayloay Member
edited November 2025 in News

From OuiHeberg Discord (Gemini translated):

📢 [Official Announcement] — Security Incident of 11/09

Hello everyone,

Since yesterday, you may have noticed the deliberate shutdown of our customer area.
This is not simple maintenance, but an exceptional crisis management measure following a security incident.

On November 9th, 2025, OuiHeberg was the victim of a targeted hack that compromised a part of our customer database.
The attackers were able to access certain personal data, including:
last name, first name, email, password (encrypted), postal address, city, country, postal code, and phone number.

🔒 Measures Implemented

  1. Complete Reset of Customer Passwords
    All passwords in the database have been intentionally rendered unusable.
    Only the "Forgot Password" function now allows for the secure restoration of account access.

  2. Emergency Migration of Web Hosting (cPanel)
    We detected a suspicious connection attempt on the cPanel servers.
    As a precaution, all websites have been temporarily migrated to another hosting provider while we stabilize the situation and perform the necessary checks.

  3. Securing VPS (Virtualizor & Proxmox)
    Our VPS infrastructure relies on two distinct environments:

    • Proxmox, our primary infrastructure (approximately 75% of VPS)
    • Virtualizor, a secondary infrastructure now considered to be the entry point of the attack

    Here are the measures taken:

    • All SSH passwords for Proxmox VPS were force-reset and regenerated during the night of November 9th to 10th.
    • The Virtualizor infrastructure shows a much higher level of compromise and has therefore been completely shut down for an indefinite period to prevent any propagation.
    • No VPS have been deleted, but access remains temporarily blocked pending a secure recovery.
  4. Reporting to Competent Authorities
    We have reported the incident to the CNIL (French Data Protection Authority) and notified the ANSSI (National Agency for the Security of Information Systems) of the facts, in accordance with our legal obligations and as part of our commitment to full transparency.

🧭 Current Status and Next Steps

Our immediate priority is the gradual restoration of service for:

  • Web hosting,
  • and Proxmox VPS, which are currently functional but in degraded mode (without a management interface).

We will soon be bringing the customer area back online so that we can communicate with all our customers. Obviously, we can no longer meet the 24-hour ETA for tickets. (https://manager.ouiheberg.com)

We want to thank each and every one of you for your patience and trust.
Our teams are fully mobilized to ensure the continuity of your services and to guarantee a return to normal under the best possible security conditions.

«1345

Comments

Sign In or Register to comment.