Howdy, Stranger!

It looks like you're new here. If you want to get involved, click one of these buttons!


Shells Virtual Desktop
BMail.ag - Secure Email Service
Server.net
CPLicense.net
VPS Server
Buy VPN
Vultr
VMs for AI
HostDare
HostDare
ReliableSite White-Label Dedicated Hosting for Resellers
InterServer VPS
BMail.ag - Secure Email Service
Best VPN
High-Performance Bare Metal Server Solutions
Karvl.com
Server Mania Cloud Hosting
DataWagon Hosting
AlphaVPS Hosting
Evoxt.com
Clouvider
VPS Hosting with NVMe
Residential IPs in the US & 4G Mobile Proxies in EU & US with Unlimited Bandwidth
ReliableSite White-Label Dedicated Hosting for Resellers
Rabisu - Hosting Solutions
Shells Virtual Desktop
New on LowEndTalk? Please Register and read our Community Rules.

All new Registrations are manually reviewed and approved, so a short delay after registration may occur before your account becomes active.

What happened to CloudCone? Was it hacked?

2456711

Comments

  • MannDudeMannDude Patron Provider, Veteran

    Virtualuzor or ... ?

  • I can’t login to the client area and both of my VPS are offline.

  • @MannDude said:
    Virtualuzor or ... ?

    Their client area was designed by them if I remember correctly. I don't know what was the virtualisation.

    Thanked by 1oloke
  • defaultdefault Veteran
    edited January 30

    @Frozecone said:
    I can’t login to the client area and both of my VPS are offline.

    I managed to access my VPS for backup and shutdown.

    I can't login to client area though.

    Thanked by 1CloudHopper
  • @default said:

    @Frozecone said:
    I can’t login to the client area and both of my VPS are offline.

    I managed to access my VPS for backup and shutdown.

    I can't login to client area though.

    Luckily I just had WireGuard setup on them so nothing important.

    I’m glad you were able to get in to backup your stuff!

    Thanked by 1default
  • sunkisssunkiss Member
    edited January 30

    Losing the data is something I can accept.

    at worst, just start over from scratch.

    **But I want to know: **

    is there a risk of data leakage like what happened with Colocrossing last time?

    Did the hackers gain access to customer data?Payment information?

    I hope it doesn't happen; I hope it's just a false alarm.

    Thanked by 1oloke
  • @default said:

    @barbaros said:
    @Cloudcone im sure @ColoCrossing can give you some consultancy about how to manage the crisis when your nodes are encrypted and how to deal with leaked customer data.

    Spoiler: play dead

    Unfortunately @Cloudcone does not have the admin here as partner for protection. That tactic won't work.

    What if they pay the 'premium protection fee'?

  • Maybe we should stop comparing this with ColoCrapping - that was their mistake (not some Virtualizor vulnerability as they assumed at the beginning and was never proven).

    This is Cloudcone, a completely different provider, a completely different scenario.

  • @barbaros said:

    @default said:

    @barbaros said:
    @Cloudcone im sure @ColoCrossing can give you some consultancy about how to manage the crisis when your nodes are encrypted and how to deal with leaked customer data.

    Spoiler: play dead

    Unfortunately @Cloudcone does not have the admin here as partner for protection. That tactic won't work.

    What if they pay the 'premium protection fee'?

    That changes everything. Nothing can compete with bilohbucks cryptocurrency.

    Thanked by 1barbaros
  • @nghialele said:
    I'm poor, when I get hack I cancel the service altogether.

    Sir you need to pay 100$ to cancel the service, else we renew it

  • defaultdefault Veteran
    edited January 30

    @barbaros said:

    @nghialele said:
    I'm poor, when I get hack I cancel the service altogether.

    Sir you need to pay 100$ to cancel the service, else we renew it

    And I dare to assume renewal is done for free automatically, until the victim pays $100 for cancellation. And even then, cancellation is processed at the end of renewal period.

    Thanked by 1barbaros
  • Something is definitely up. I've got an account there but no product, their panel login form doesn't load properly. The in-house captcha doesn't load so can't proceed to login.

  • defaultdefault Veteran
    edited January 30

    If anybody else can access their data, don't forget to make backups fast!

    Thanked by 2oloke Sharmaishaan72
  • @default said:

    If anybody else can access their data, don't forget to make backups fast!

    Isnt there a chance that server is infected already?

  • defaultdefault Veteran
    edited January 30

    @barbaros said:

    @default said:

    If anybody else can access their data, don't forget to make backups fast!

    Isnt there a chance that server is infected already?

    Could be. It is up to each system administrator to check if their data is not compromised or corrupted.

  • 0xEf35250A9A2A763F87E406C2a9187A5a389c09AA
    TWJr7y6cwF3t8hqVoGHvwYuGbP9AtJDVMw
    UQBzr3lIN_8t9o4zN10M4cuD7OO2643GT-wFgia3EN-MSI39

    you can see how much money is in hacker's account.

  • olokeoloke Member, Host Rep
    edited January 30

    @MaxTakeba

    I still can't understand why would anyone pay.
    I don't even have $100 to spend on LET providers. Let alone some hacker who tries to extort people.

    This was so obvious... don't have words.

    Thanked by 1MaxTakeba
  • tentortentor Member, Host Rep

    @barbaros said:

    @nghialele said:
    I'm poor, when I get hack I cancel the service altogether.

    Sir you need to pay 100$ to cancel the service, else we renew it

    Bolox is several threads below

  • rpqurpqu Member
    edited January 30

    @oloke said:

    @MaxTakeba

    I still can't understand why would anyone pay.

    Because they don't have any backup.
    It doesn't matter whether it's reseller drama, datacenter caught on fire, deadpool, hostile takeover, ransomware. Follow 3-2-1 rule and avoid data loss
    Note:
    db replication, wal archiving is bothersome, but at least you could sleep well.

    Zero backup == Zero worth

  • defaultdefault Veteran
    edited January 30

    At least let's hope no private porn stash gets compromised from this hacking. :wink:

    Thanked by 2oloke rpqu
  • how you guys logging in? The captcha does not show up for me. website running ok otherwise

  • @whynotlearn said:

    @MikeA said:

    @MaxTakeba said: Why in the FUCK are people paying the ransom?

    I don't think they actually are. But still, $100 is cheap if you have important data and don't have a backup.

    I don't think that they are gonna give the data tho.

    They might as well then see that you are desperate of your data and try to extract even more.

    Suppose you gave 100 and then they might ask for 50 and then so on

    plus this would now have sunk cost fallacy where you felt like you already gave money in first place, might as well give more money to then get data

    but the point is that they are scammers and they wont give your data until they compeltely extort you and even then 99%-100% that they won't give your data.

    Please don't pay these scammers. Chances of you getting scammed are 99.99%-100% imho

    Literally not worth it at all Please do not pay these scammers anything or entertain them imo

    Totally agree, paying ransom to hackers will not help at all.

    Thanked by 1whynotlearn
  • My brother, I can't log in to the client area using the CODE I entered. All VPS connections have been lost.

  • Their Reston Location seems not to be affected. Mine is fine, but LA one is not working.

  • rpqurpqu Member

    @Arirang said:
    Their Reston Location seems not to be affected. Mine is fine, but LA one is not working.

    Don't forget to backup

    Thanked by 1tentor
  • @oloke said:

    @MaxTakeba

    I still can't understand why would anyone pay.
    I don't even have $100 to spend on LET providers. Let alone some hacker who tries to extort people.

    This was so obvious... don't have words.

    That $100 could have been spent on a solid back up solution for years to come.

    I am so disappointed.

    Time for your monthly reminder to ensure your back up process IS working.

    Thanked by 1oloke
  • I have lots of backups, thankfully. Question is, do I just move elsewhere now, or see if cloudcone pulls this off somehow.

  • @jadehsn said:
    I have lots of backups, thankfully. Question is, do I just move elsewhere now, or see if cloudcone pulls this off somehow.

    Move to elsewhere.

    As a former loyal customer of cloudcone, I have learnt it in hard way long ago when in a migration, my vps was offline for 3 months.

  • r1nxr1nx Member

    @default said:
    My VPS server at Cloudcone is still operational.

    consider it as good as already breached. if multiple people are breached you may be too, you just aren't encrypted yet. take your files and databases (that hopefully had sensitive info hashed, salted and peppered) and move to another hoster.

    if you run a service prompt all users to change their passwords once you migrate.

    [maybe im paranoid but this is what id do]

    Thanked by 2rpqu default
Sign In or Register to comment.