Howdy, Stranger!

It looks like you're new here. If you want to get involved, click one of these buttons!


BMail.ag - Secure Email Service
Server.net
CPLicense.net
VPS Server
Buy VPN
Vultr
VMs for AI
HostDare
ReliableSite White-Label Dedicated Hosting for Resellers
25% Recurring Discount on NVMe VPS
Try EnsoVPN - Reliable VPN - 1-Day Free Trial
InterServer VPS
BMail.ag - Secure Email Service
Best VPN
High-Performance Bare Metal Server Solutions
Karvl.com
Server Mania Cloud Hosting
DataWagon Hosting
AlphaVPS Hosting
Evoxt.com
Clouvider
VPS Hosting with NVMe
Residential IPs in the US & 4G Mobile Proxies in EU & US with Unlimited Bandwidth
ReliableSite White-Label Dedicated Hosting for Resellers
Rabisu - Hosting Solutions
CloudLinux
Try EnsoVPN - Fast & Private VPN - 1-Day Free Trial
New on LowEndTalk? Please Register and read our Community Rules.

All new Registrations are manually reviewed and approved, so a short delay after registration may occur before your account becomes active.

HostDzire Hit by Ransomware Attack

11011121416

Comments

  • @samsaie said: Why continue using VMWARE???

    Probably because it's not easy for a provider to completely switch platform and tooling
    in a matter of days. Everything can have vulnerabilities, both Xen and KVM had a few
    last month as well, the question is how they deal with situations like this.

  • samsaiesamsaie Member

    @gabri said:

    @samsaie said:
    Why continue using VMWARE??? Are you waiting for the next vulnerability to get extorted again??

    You think broadcom will never fix it?

    The cumulative number of disclosed CVE vulnerabilities in the VMware ecosystem far exceeds that of KVM. Since major public cloud providers build their multi-tenant environments on KVM architecture, KVM has undergone extremely rigorous security testing, and the frequency of ultra-high-risk vulnerabilities that allow "direct penetration to the host kernel" is significantly lower than that of VMware.

  • samsaiesamsaie Member

    @HostDZire said:

    Update – VMware VPS Provisioning Completed

    Hello Everyone,

    We are pleased to provide another update on the recovery and VPS provisioning process.

    We can now confirm that all affected VMware VPS services in both India and the Netherlands have been assigned to customer accounts.

    India Cloud VPS

    100% Completed ✅

    All affected India Cloud VPS services have been recreated and assigned to the respective customer accounts.

    Netherlands VPS

    100% Completed ✅

    The remaining Netherlands VPS services have also now been provisioned and assigned.

    What You Should Do

    If your VPS has been assigned, please log in to your Client Area and check your service details. Your VPS access information should be available there.

    You may also have received an automatic VPS activation email. If you did not receive the email, please don't be concerned, as email delivery can sometimes fail due to bounces, delays, spam filtering, or other email-related issues.

    If your VPS is assigned but is not working or is not accessible, you can try reinstalling the VPS from your Client Area.

    If you encounter an error while reinstalling, starting/stopping the VPS, or using any other management function, please open or reply to your support ticket with a screenshot of the error. This will help our team investigate and resolve the issue more quickly.

    Please avoid opening multiple tickets for the same issue.

    We understand that this recovery process has taken considerably longer than anyone expected. We sincerely appreciate your patience and understanding while our team worked continuously to rebuild the infrastructure and restore affected services.

    Kind Regards,
    HostDZire Team

    So what measures have you taken now to prevent such issues from occurring again in the future?

  • @JohnnySac said:
    Is anyone else having an issue with the VNC console in India? When I click the Open Console link it just says Disconnected in the window that pops up. Looks like a 503 error on the websocket.

    I did face yesterday. Today working.

    Thanked by 1JohnnySac
  • @samsaie said:

    @HostDZire said:

    Update – VMware VPS Provisioning Completed

    Hello Everyone,

    We are pleased to provide another update on the recovery and VPS provisioning process.

    We can now confirm that all affected VMware VPS services in both India and the Netherlands have been assigned to customer accounts.

    India Cloud VPS

    100% Completed ✅

    All affected India Cloud VPS services have been recreated and assigned to the respective customer accounts.

    Netherlands VPS

    100% Completed ✅

    The remaining Netherlands VPS services have also now been provisioned and assigned.

    What You Should Do

    If your VPS has been assigned, please log in to your Client Area and check your service details. Your VPS access information should be available there.

    You may also have received an automatic VPS activation email. If you did not receive the email, please don't be concerned, as email delivery can sometimes fail due to bounces, delays, spam filtering, or other email-related issues.

    If your VPS is assigned but is not working or is not accessible, you can try reinstalling the VPS from your Client Area.

    If you encounter an error while reinstalling, starting/stopping the VPS, or using any other management function, please open or reply to your support ticket with a screenshot of the error. This will help our team investigate and resolve the issue more quickly.

    Please avoid opening multiple tickets for the same issue.

    We understand that this recovery process has taken considerably longer than anyone expected. We sincerely appreciate your patience and understanding while our team worked continuously to rebuild the infrastructure and restore affected services.

    Kind Regards,
    HostDZire Team

    So what measures have you taken now to prevent such issues from occurring again in the future?

    I would also like to know this.

  • QuenFeaQuenFea Member
    edited August 9

    @CloudHopper said:

    @QuenFea said:
    As this was all an unforeseen circumstance, who could have imagined that, following a data loss, they would now be implementing a policy of randomly changing IP addresses?

    This will be my 3rd IP renumbering of one of my VMs so far this year. It's the first data loss I've had in a while, but that also happens a lot with LET hosts. In fact, Hostdzire's NL offer explicitly said that the host server didn't have RAID configured so data loss was a very foreseeable outcome.

    If you read through all my previous replies, you’ll see I stated from the start that data loss resulting from a security breach is entirely acceptable; as consumers, we should always maintain our own backups rather than relying on the provider.
    My main issue has always been Hostdzire’s decision to simply reassign random IPs in order to speed up recovery. Keep in mind that the context here was a server reconfiguration necessitated by a breach—not a data center migration or an IP re-addressing scheme.
    To expedite recovery, they could have easily assigned random IPs from a pool of unallocated subnets that existed prior to the breach, allowing customers to manually switch back to their original IPs later if needed. Unfortunately, that isn't the path they chose. Perhaps it was a cost consideration, a lack of sufficient unallocated subnets to support that approach, or some other factor.
    1. The affected service was located in India, not the Netherlands.
    2. I don't care about the data loss; my only concern is the original IP address.
    3. They have decades of experience, yet the emergency response plan implemented following this breach struck me as chaotic—more like a series of ad-hoc decisions.

    Regardless, what they need to do now is promptly analyze and fully disclose the cause of the incident and the current remediation steps, while also preparing contingency plans for various scenarios. If possible, they should also adjust pricing to reflect current hardware market rates—doubling, tripling, or even quadrupling prices. Only with sufficient profit margins can they realistically aim for stability, security, and efficiency.

  • i12hi12h Member

    @QuenFea said:
    3. They have decades of experience, yet the emergency response plan implemented following this breach struck me as chaotic—more like a series of ad-hoc decisions.

    I agree with your point. However, in the current market, they are merely a microcosm; the ceiling for service quality at this price point is inevitably limited to this level.

  • mhpteammhpteam Member

    @Void said: What is an Eric ?

    bolox media

  • dosaidosai Veteran

    @mhpteam said:

    @Void said: What is an Eric ?

    bolox media

    Context please?

  • rpqurpqu Member

    @dosai said:

    @mhpteam said:

    @Void said: What is an Eric ?

    bolox media

    Context please?

    @VeloxMedia

  • dosaidosai Veteran

    @rpqu said:

    @dosai said:

    @mhpteam said:

    @Void said: What is an Eric ?

    bolox media

    Context please?

    @VeloxMedia

    What does he have to do with Hostdzire?

  • @dosai said:

    @rpqu said:

    @dosai said:

    @mhpteam said:

    @Void said: What is an Eric ?

    bolox media

    Context please?

    @VeloxMedia

    What does he have to do with Hostdzire?

    Everytime a LET host has a security incident, the volox signal illuminates the night sky.
    Eric pulls up his whitey tighties and spins up a new account to crashout on LET.

    Thanked by 2rpqu alexanderras
  • HostDZireHostDZire Patron Provider, Veteran
    edited August 9

    @QuenFea said:

    @CloudHopper said:

    @QuenFea said:
    As this was all an unforeseen circumstance, who could have imagined that, following a data loss, they would now be implementing a policy of randomly changing IP addresses?

    This will be my 3rd IP renumbering of one of my VMs so far this year. It's the first data loss I've had in a while, but that also happens a lot with LET hosts. In fact, Hostdzire's NL offer explicitly said that the host server didn't have RAID configured so data loss was a very foreseeable outcome.

    If you read through all my previous replies, you’ll see I stated from the start that data loss resulting from a security breach is entirely acceptable; as consumers, we should always maintain our own backups rather than relying on the provider.
    My main issue has always been Hostdzire’s decision to simply reassign random IPs in order to speed up recovery. Keep in mind that the context here was a server reconfiguration necessitated by a breach—not a data center migration or an IP re-addressing scheme.
    To expedite recovery, they could have easily assigned random IPs from a pool of unallocated subnets that existed prior to the breach, allowing customers to manually switch back to their original IPs later if needed. Unfortunately, that isn't the path they chose. Perhaps it was a cost consideration, a lack of sufficient unallocated subnets to support that approach, or some other factor.
    1. The affected service was located in India, not the Netherlands.
    2. I don't care about the data loss; my only concern is the original IP address.
    3. They have decades of experience, yet the emergency response plan implemented following this breach struck me as chaotic—more like a series of ad-hoc decisions.

    Regardless, what they need to do now is promptly analyze and fully disclose the cause of the incident and the current remediation steps, while also preparing contingency plans for various scenarios. If possible, they should also adjust pricing to reflect current hardware market rates—doubling, tripling, or even quadrupling prices. Only with sufficient profit margins can they realistically aim for stability, security, and efficiency.

    You are totally right about assigning random IP.
    We knew this would make uphappy some clients,
    But mostly people do care about exact same IP, they do care about same IP range for sure.
    But there are still few client who wants exactly same IP like you, thats why oroginal approrch was to assign same IP, but it was causing more time.

    But unfortunately that didnt work due to time taking process,
    It was going to take like one week to assign all vps if we went that way.
    I am sorry that this decision effected you alot.

    Thanked by 2Samoht999 tzuli
  • Any chance to get IPv6 in India since you are redoing things anyway?

    Thanked by 1JohnnySac
  • CloudHopperCloudHopper Member
    edited August 9

    @QuenFea said:

    @CloudHopper said:

    @QuenFea said:
    As this was all an unforeseen circumstance, who could have imagined that, following a data loss, they would now be implementing a policy of randomly changing IP addresses?

    This will be my 3rd IP renumbering of one of my VMs so far this year. It's the first data loss I've had in a while, but that also happens a lot with LET hosts. In fact, Hostdzire's NL offer explicitly said that the host server didn't have RAID configured so data loss was a very foreseeable outcome.

    If you read through all my previous replies, you’ll see I stated from the start that data loss resulting from a security breach is entirely acceptable; as consumers, we should always maintain our own backups rather than relying on the provider.
    My main issue has always been Hostdzire’s decision to simply reassign random IPs in order to speed up recovery. Keep in mind that the context here was a server reconfiguration necessitated by a breach—not a data center migration or an IP re-addressing scheme.
    To expedite recovery, they could have easily assigned random IPs from a pool of unallocated subnets that existed prior to the breach, allowing customers to manually switch back to their original IPs later if needed. Unfortunately, that isn't the path they chose. Perhaps it was a cost consideration, a lack of sufficient unallocated subnets to support that approach, or some other factor.
    1. The affected service was located in India, not the Netherlands.
    2. I don't care about the data loss; my only concern is the original IP address.
    3. They have decades of experience, yet the emergency response plan implemented following this breach struck me as chaotic—more like a series of ad-hoc decisions.

    Regardless, what they need to do now is promptly analyze and fully disclose the cause of the incident and the current remediation steps, while also preparing contingency plans for various scenarios. If possible, they should also adjust pricing to reflect current hardware market rates—doubling, tripling, or even quadrupling prices. Only with sufficient profit margins can they realistically aim for stability, security, and efficiency.

    I think your just shopping in the wrong window. This is "Low End Talk" and things are supposed to be cheap, with providers cutting corners to keep prices down. Servers here are cheap, but you have to accept occasional IP renumbering, noisy neighbours, inconvenient maintenance windows, less than perfect uptime and possible data loss as part of the package.

    If you want to pay double, triple or even quadruple the price then there's established providers that serve that market, but they don't advertise here. The truth is you should be angry at yourself for putting a production workload on a Low End server without a proper disaster and recovery plan because there servers are cheap for a reason.

  • FairShareFairShare Member
    edited August 9

    @CloudHopper said:

    @QuenFea said:

    @CloudHopper said:

    @QuenFea said:
    As this was all an unforeseen circumstance, who could have imagined that, following a data loss, they would now be implementing a policy of randomly changing IP addresses?

    This will be my 3rd IP renumbering of one of my VMs so far this year. It's the first data loss I've had in a while, but that also happens a lot with LET hosts. In fact, Hostdzire's NL offer explicitly said that the host server didn't have RAID configured so data loss was a very foreseeable outcome.

    If you read through all my previous replies, you’ll see I stated from the start that data loss resulting from a security breach is entirely acceptable; as consumers, we should always maintain our own backups rather than relying on the provider.
    My main issue has always been Hostdzire’s decision to simply reassign random IPs in order to speed up recovery. Keep in mind that the context here was a server reconfiguration necessitated by a breach—not a data center migration or an IP re-addressing scheme.
    To expedite recovery, they could have easily assigned random IPs from a pool of unallocated subnets that existed prior to the breach, allowing customers to manually switch back to their original IPs later if needed. Unfortunately, that isn't the path they chose. Perhaps it was a cost consideration, a lack of sufficient unallocated subnets to support that approach, or some other factor.
    1. The affected service was located in India, not the Netherlands.
    2. I don't care about the data loss; my only concern is the original IP address.
    3. They have decades of experience, yet the emergency response plan implemented following this breach struck me as chaotic—more like a series of ad-hoc decisions.

    Regardless, what they need to do now is promptly analyze and fully disclose the cause of the incident and the current remediation steps, while also preparing contingency plans for various scenarios. If possible, they should also adjust pricing to reflect current hardware market rates—doubling, tripling, or even quadrupling prices. Only with sufficient profit margins can they realistically aim for stability, security, and efficiency.

    I think your just shopping in the wrong window. This is "Low End Talk" and things are supposed to be cheap, with providers cutting corners to keep prices down. Servers here are cheap, but you have to accept occasional IP renumbering, noisy neighbours, inconvenient maintenance windows, less than perfect uptime and possible data loss as part of the package.

    If you want to pay double, triple or even quadruple the price then there's established providers that serve that market, but they don't advertise here. The truth is you should be angry at yourself for putting a production workload on a Low End server without a proper disaster and recovery plan because there servers are cheap for a reason.
    **
    I think this comment must be made as a STICKY somewhere in the forum. I am extremely angry at myself after putting a 2 year long worth of production workload at a cheap server without a disaster management plan. I LOST it , not millions of dollars but yes it is in low four figures !
    I was a happy man using shared hosting . Most of the good providers have Acronis/JetBackup and I was able to get the data back in case of personal fukups . And Murphy got behind me just when the pants were down. I had just put my site 2 days before the incident and wiped the old server.

  • @FairShare said:

    @CloudHopper said:

    @QuenFea said:

    @CloudHopper said:

    @QuenFea said:
    As this was all an unforeseen circumstance, who could have imagined that, following a data loss, they would now be implementing a policy of randomly changing IP addresses?

    This will be my 3rd IP renumbering of one of my VMs so far this year. It's the first data loss I've had in a while, but that also happens a lot with LET hosts. In fact, Hostdzire's NL offer explicitly said that the host server didn't have RAID configured so data loss was a very foreseeable outcome.

    If you read through all my previous replies, you’ll see I stated from the start that data loss resulting from a security breach is entirely acceptable; as consumers, we should always maintain our own backups rather than relying on the provider.
    My main issue has always been Hostdzire’s decision to simply reassign random IPs in order to speed up recovery. Keep in mind that the context here was a server reconfiguration necessitated by a breach—not a data center migration or an IP re-addressing scheme.
    To expedite recovery, they could have easily assigned random IPs from a pool of unallocated subnets that existed prior to the breach, allowing customers to manually switch back to their original IPs later if needed. Unfortunately, that isn't the path they chose. Perhaps it was a cost consideration, a lack of sufficient unallocated subnets to support that approach, or some other factor.
    1. The affected service was located in India, not the Netherlands.
    2. I don't care about the data loss; my only concern is the original IP address.
    3. They have decades of experience, yet the emergency response plan implemented following this breach struck me as chaotic—more like a series of ad-hoc decisions.

    Regardless, what they need to do now is promptly analyze and fully disclose the cause of the incident and the current remediation steps, while also preparing contingency plans for various scenarios. If possible, they should also adjust pricing to reflect current hardware market rates—doubling, tripling, or even quadrupling prices. Only with sufficient profit margins can they realistically aim for stability, security, and efficiency.

    I think your just shopping in the wrong window. This is "Low End Talk" and things are supposed to be cheap, with providers cutting corners to keep prices down. Servers here are cheap, but you have to accept occasional IP renumbering, noisy neighbours, inconvenient maintenance windows, less than perfect uptime and possible data loss as part of the package.

    If you want to pay double, triple or even quadruple the price then there's established providers that serve that market, but they don't advertise here. The truth is you should be angry at yourself for putting a production workload on a Low End server without a proper disaster and recovery plan because there servers are cheap for a reason.
    **
    I think this comment must be made as a STICKY somewhere in the forum. I am extremely angry at myself after putting a 2 year long worth of production workload at a cheap server without a disaster management plan. I LOST it , not millions of dollars but yes it is in low four figures !
    I was a happy man using shared hosting . Most of the good providers have Acronis/JetBackup and I was able to get the data back in case of personal fukups . And Murphy got behind me just when the pants were down. I had just put my site 2 days before the incident and wiped the old server.

    The price of leaseweb vps was similar to hostdzire.

    You can also do your own backup just using bash scripts , and download the backup locally

    It's not that difficult .

  • @Samoht999 said:

    @FairShare said:

    @CloudHopper said:

    @QuenFea said:

    @CloudHopper said:

    @QuenFea said:
    As this was all an unforeseen circumstance, who could have imagined that, following a data loss, they would now be implementing a policy of randomly changing IP addresses?

    This will be my 3rd IP renumbering of one of my VMs so far this year. It's the first data loss I've had in a while, but that also happens a lot with LET hosts. In fact, Hostdzire's NL offer explicitly said that the host server didn't have RAID configured so data loss was a very foreseeable outcome.

    If you read through all my previous replies, you’ll see I stated from the start that data loss resulting from a security breach is entirely acceptable; as consumers, we should always maintain our own backups rather than relying on the provider.
    My main issue has always been Hostdzire’s decision to simply reassign random IPs in order to speed up recovery. Keep in mind that the context here was a server reconfiguration necessitated by a breach—not a data center migration or an IP re-addressing scheme.
    To expedite recovery, they could have easily assigned random IPs from a pool of unallocated subnets that existed prior to the breach, allowing customers to manually switch back to their original IPs later if needed. Unfortunately, that isn't the path they chose. Perhaps it was a cost consideration, a lack of sufficient unallocated subnets to support that approach, or some other factor.
    1. The affected service was located in India, not the Netherlands.
    2. I don't care about the data loss; my only concern is the original IP address.
    3. They have decades of experience, yet the emergency response plan implemented following this breach struck me as chaotic—more like a series of ad-hoc decisions.

    Regardless, what they need to do now is promptly analyze and fully disclose the cause of the incident and the current remediation steps, while also preparing contingency plans for various scenarios. If possible, they should also adjust pricing to reflect current hardware market rates—doubling, tripling, or even quadrupling prices. Only with sufficient profit margins can they realistically aim for stability, security, and efficiency.

    I think your just shopping in the wrong window. This is "Low End Talk" and things are supposed to be cheap, with providers cutting corners to keep prices down. Servers here are cheap, but you have to accept occasional IP renumbering, noisy neighbours, inconvenient maintenance windows, less than perfect uptime and possible data loss as part of the package.

    If you want to pay double, triple or even quadruple the price then there's established providers that serve that market, but they don't advertise here. The truth is you should be angry at yourself for putting a production workload on a Low End server without a proper disaster and recovery plan because there servers are cheap for a reason.
    **
    I think this comment must be made as a STICKY somewhere in the forum. I am extremely angry at myself after putting a 2 year long worth of production workload at a cheap server without a disaster management plan. I LOST it , not millions of dollars but yes it is in low four figures !
    I was a happy man using shared hosting . Most of the good providers have Acronis/JetBackup and I was able to get the data back in case of personal fukups . And Murphy got behind me just when the pants were down. I had just put my site 2 days before the incident and wiped the old server.

    The price of leaseweb vps was similar to hostdzire.

    You can also do your own backup just using bash scripts , and download the backup locally

    It's not that difficult .

    It's not about difficulty . It is about sheer laziness. I have storage from Koofr/NetDynamics24 but they were not configured.
    I bought native HostDzire VPS due to Indian location (which is important for my project) over Leaseweb.

  • QuenFeaQuenFea Member

    @CloudHopper said:

    @QuenFea said:

    @CloudHopper said:

    @QuenFea said:
    As this was all an unforeseen circumstance, who could have imagined that, following a data loss, they would now be implementing a policy of randomly changing IP addresses?

    This will be my 3rd IP renumbering of one of my VMs so far this year. It's the first data loss I've had in a while, but that also happens a lot with LET hosts. In fact, Hostdzire's NL offer explicitly said that the host server didn't have RAID configured so data loss was a very foreseeable outcome.

    If you read through all my previous replies, you’ll see I stated from the start that data loss resulting from a security breach is entirely acceptable; as consumers, we should always maintain our own backups rather than relying on the provider.
    My main issue has always been Hostdzire’s decision to simply reassign random IPs in order to speed up recovery. Keep in mind that the context here was a server reconfiguration necessitated by a breach—not a data center migration or an IP re-addressing scheme.
    To expedite recovery, they could have easily assigned random IPs from a pool of unallocated subnets that existed prior to the breach, allowing customers to manually switch back to their original IPs later if needed. Unfortunately, that isn't the path they chose. Perhaps it was a cost consideration, a lack of sufficient unallocated subnets to support that approach, or some other factor.
    1. The affected service was located in India, not the Netherlands.
    2. I don't care about the data loss; my only concern is the original IP address.
    3. They have decades of experience, yet the emergency response plan implemented following this breach struck me as chaotic—more like a series of ad-hoc decisions.

    Regardless, what they need to do now is promptly analyze and fully disclose the cause of the incident and the current remediation steps, while also preparing contingency plans for various scenarios. If possible, they should also adjust pricing to reflect current hardware market rates—doubling, tripling, or even quadrupling prices. Only with sufficient profit margins can they realistically aim for stability, security, and efficiency.

    I think your just shopping in the wrong window. This is "Low End Talk" and things are supposed to be cheap, with providers cutting corners to keep prices down. Servers here are cheap, but you have to accept occasional IP renumbering, noisy neighbours, inconvenient maintenance windows, less than perfect uptime and possible data loss as part of the package.

    If you want to pay double, triple or even quadruple the price then there's established providers that serve that market, but they don't advertise here. The truth is you should be angry at yourself for putting a production workload on a Low End server without a proper disaster and recovery plan because there servers are cheap for a reason.

    You simply don’t understand.
    These servers come with 16H/32GB/240GB, yet the annual fee is only $32. Do you see any problem with raising the price?

  • @QuenFea said: Do you see any problem with raising the price?

    Yes, price should stay the same until 2099.

    Thanked by 1truemagic
  • @QuenFea said:

    @CloudHopper said:

    @QuenFea said:

    @CloudHopper said:

    @QuenFea said:
    As this was all an unforeseen circumstance, who could have imagined that, following a data loss, they would now be implementing a policy of randomly changing IP addresses?

    This will be my 3rd IP renumbering of one of my VMs so far this year. It's the first data loss I've had in a while, but that also happens a lot with LET hosts. In fact, Hostdzire's NL offer explicitly said that the host server didn't have RAID configured so data loss was a very foreseeable outcome.

    If you read through all my previous replies, you’ll see I stated from the start that data loss resulting from a security breach is entirely acceptable; as consumers, we should always maintain our own backups rather than relying on the provider.
    My main issue has always been Hostdzire’s decision to simply reassign random IPs in order to speed up recovery. Keep in mind that the context here was a server reconfiguration necessitated by a breach—not a data center migration or an IP re-addressing scheme.
    To expedite recovery, they could have easily assigned random IPs from a pool of unallocated subnets that existed prior to the breach, allowing customers to manually switch back to their original IPs later if needed. Unfortunately, that isn't the path they chose. Perhaps it was a cost consideration, a lack of sufficient unallocated subnets to support that approach, or some other factor.
    1. The affected service was located in India, not the Netherlands.
    2. I don't care about the data loss; my only concern is the original IP address.
    3. They have decades of experience, yet the emergency response plan implemented following this breach struck me as chaotic—more like a series of ad-hoc decisions.

    Regardless, what they need to do now is promptly analyze and fully disclose the cause of the incident and the current remediation steps, while also preparing contingency plans for various scenarios. If possible, they should also adjust pricing to reflect current hardware market rates—doubling, tripling, or even quadrupling prices. Only with sufficient profit margins can they realistically aim for stability, security, and efficiency.

    I think your just shopping in the wrong window. This is "Low End Talk" and things are supposed to be cheap, with providers cutting corners to keep prices down. Servers here are cheap, but you have to accept occasional IP renumbering, noisy neighbours, inconvenient maintenance windows, less than perfect uptime and possible data loss as part of the package.

    If you want to pay double, triple or even quadruple the price then there's established providers that serve that market, but they don't advertise here. The truth is you should be angry at yourself for putting a production workload on a Low End server without a proper disaster and recovery plan because there servers are cheap for a reason.

    You simply don’t understand.
    These servers come with 16H/32GB/240GB, yet the annual fee is only $32. Do you see any problem with raising the price?

    No, you don't understand. People here want cheap servers and are willing to accept the trade-offs. There's plenty of providers that will charge you more, and some of them will offer you better reliability and security etc. But this is Low End Talk and here you buy Low End servers at rock bottom prices. So if you ran a production workload on a server you're paying less than $3/month without a disaster and recovery plan that's on you.

    Thanked by 2zed tzuli
  • HostDZireHostDZire Patron Provider, Veteran

    VPS Compensation Options

    Following the recent VMware infrastructure incident

    Hello Everyone,

    First of all, we want to sincerely apologize once again for the disruption and loss of service caused by the recent incident.

    We understand that this has caused significant inconvenience, and we also understand that no amount of compensation can truly make up for the impact this incident may have had on your business, applications, or services.

    After carefully reviewing the situation and what we are financially able to provide, we would like to offer the following compensation to customers whose VMware VPS services were affected.

    Compensation

    Billing Plan Compensation
    Monthly Plan 7 Days Free
    Annual Plan 1 Month Free
    Biannual Plan 2 Months Free
    Triannual Plan 3 Months Free

    Important: Compensation & Renewal Date

    The additional service time will be added to your existing service period, and your next renewal date will be extended accordingly within the next few days.

    If you do not see the updated renewal date after one week, please open a support ticket and our team will check and update it for you.

    A Note From Us

    We know that some customers may feel that this compensation is not enough, and we completely understand that perspective.

    If it were financially possible for us to offer more, we would genuinely like to do so.

    However, this incident has already resulted in a very significant financial impact on our company, including the cost of rebuilding the affected infrastructure, replacing resources, and restoring services.

    Offering compensation beyond the above would unfortunately not be financially sustainable for us at this time.

    We have tried to find a balance between acknowledging the disruption caused to our customers and ensuring that HostDZire remains financially capable of continuing operations and supporting everyone going forward.

    This compensation is therefore our best possible offer under the current circumstances.

    We sincerely apologize for what happened, for the downtime, for the disruption to your services, and for the time it has taken to restore everything.

    We are truly grateful to those who have continued to support us during this extremely difficult situation. We will continue working to rebuild your trust through our actions and by making our infrastructure more secure and resilient going forward.

    Kind Regards,
    HostDZire Team

  • FalzoFalzo Veteran

    Compensation is a really good gesture!!

    but binding it to the contract like this does not make sense. The downtime was the same for anyone, so why would monthly paying people (who probably even pay the most for the same ressources) get less than a 3y cheapskate?

  • kevin99kevin99 Member

    @Falzo said:
    Compensation is a really good gesture!!

    but binding it to the contract like this does not make sense. The downtime was the same for anyone, so why would monthly paying people (who probably even pay the most for the same ressources) get less than a 3y cheapskate?

    https://en.wikipedia.org/wiki/Time_value_of_money

    "The time value of money refers to the observation that it is better to receive money sooner than later. Money you have today can be invested to earn a positive rate of return, producing more money tomorrow. Therefore, a dollar today is worth more than a dollar in the future."

    Thanked by 1mans_xd
  • @HostDzire could you humbly look at your messages when possible. Trying to get a box from you whenever you wake up and log back in.

  • mehargagsmehargags Member
    edited August 9

    @HostDZire I requested Debian 13 Template for OS Reinstall via ticket #179938.

  • dev127dev127 Member

    @mehargags said:
    @HostDZire I requested Debian 13 Template for OS Reinstall via ticket #179938.

    @HostDZire Debian 13 Template for OS Reinstall

    Thanked by 1mehargags
  • jsgjsg Member, Resident Benchmarker
    edited August 9

    @samsaie said:

    @gabri said:

    @samsaie said:
    Why continue using VMWARE??? Are you waiting for the next vulnerability to get extorted again??

    You think broadcom will never fix it?

    Since major public cloud providers build their multi-tenant environments on KVM architecture, KVM has undergone extremely rigorous security testing ...

    Can you show solid evidence for that?

    and the frequency of ultra-high-risk vulnerabilities that allow "direct penetration to the host kernel" is significantly lower than that of VMware.

    That may (or may not) be the case but at the end of the day it's kind of a lottery with all hypervisors and OSs. None of them were designed and built following/using secure principles, standards, and tools/chains.

    The way I see it, based on quite some experience is: there are the vulnerabilites that were already found and those not yet found

    @CloudHopper said:

    @QuenFea said:

    @CloudHopper said:

    @QuenFea said:
    As this was all an unforeseen circumstance, who could have imagined that, following a data loss, they would now be implementing a policy of randomly changing IP addresses?

    This will be my 3rd IP renumbering of one of my VMs so far this year. It's the first data loss I've had in a while, but that also happens a lot with LET hosts. In fact, Hostdzire's NL offer explicitly said that the host server didn't have RAID configured so data loss was a very foreseeable outcome.

    If you read through all my previous replies, you’ll see I stated from the start that data loss resulting from a security breach is entirely acceptable; as consumers, we should always maintain our own backups rather than relying on the provider.
    My main issue has always been Hostdzire’s decision to simply reassign random IPs in order to speed up recovery. Keep in mind that the context here was a server reconfiguration necessitated by a breach—not a data center migration or an IP re-addressing scheme.
    To expedite recovery, they could have easily assigned random IPs from a pool of unallocated subnets that existed prior to the breach, allowing customers to manually switch back to their original IPs later if needed. Unfortunately, that isn't the path they chose. Perhaps it was a cost consideration, a lack of sufficient unallocated subnets to support that approach, or some other factor.
    1. The affected service was located in India, not the Netherlands.
    2. I don't care about the data loss; my only concern is the original IP address.
    3. They have decades of experience, yet the emergency response plan implemented following this breach struck me as chaotic—more like a series of ad-hoc decisions.

    Regardless, what they need to do now is promptly analyze and fully disclose the cause of the incident and the current remediation steps, while also preparing contingency plans for various scenarios. If possible, they should also adjust pricing to reflect current hardware market rates—doubling, tripling, or even quadrupling prices. Only with sufficient profit margins can they realistically aim for stability, security, and efficiency.

    I think your just shopping in the wrong window. This is "Low End Talk" and things are supposed to be cheap, with providers cutting corners to keep prices down. Servers here are cheap, but you have to accept occasional IP renumbering, noisy neighbours, inconvenient maintenance windows, less than perfect uptime and possible data loss as part of the package.

    If you want to pay double, triple or even quadruple the price then there's established providers that serve that market, but they don't advertise here. The truth is you should be angry at yourself for putting a production workload on a Low End server without a proper disaster and recovery plan because there servers are cheap for a reason.

    Yes and No. Yes, this is "Low End Talk" and things are supposed to be cheap, but No, paying more or even much more does not translate to quality or reliability, at least in many cases.

    Also, where is the community for those expensive or even super-expensive providers, where can I get reliable information?
    Besides, many (most?) of us do not even look for high grade professional hosting. We look for cheap hosting for small/side/hobby/private projects that just need a reasonably good space on the internet, and frankly, even if they aren't reachable/available for a couple of hours per month or even a few days per year, so what? (~ "life will go on").

    The true reason this accident created days of off-time/failure was not the accident per se (ransomware) but the fact that @HostDZire seems to not have had infra backups.
    AFAIC I'm not even angry at all, what I was looking for was how they reacted. Because, you see, everybody can fail occasionally, what separates us though is whether and what we learn from a failure; there are those who just continue as usual (after rebuilding) and those who learn and adapt, in this case e.g. by from now on making infra backups.

    HostDZire did learn and adapt plus he even offers some compensation. I do not see any reason at all to not consider them a top-provider with extremely attractive deals.

    Thanked by 2HostDZire ayerfton
  • HostDZireHostDZire Patron Provider, Veteran

    @mehargags said:
    @HostDZire I requested Debian 13 Template for OS Reinstall via ticket #179938.

    @dev127 said:

    @mehargags said:
    @HostDZire I requested Debian 13 Template for OS Reinstall via ticket #179938.

    @HostDZire Debian 13 Template for OS Reinstall

    Hopefully tomorrow, we had debian 13 already but it has some issue.
    We will fix it and enable it.

    Thanked by 1mehargags
  • defaultdefault Veteran
    edited August 9

    @HostDZire — it is enough for me that you offer and keep really cheap servers to this community; I don't need any compensation. Accidents can happen, especially in an age when AI evolves so much and so fast (for good people, but also for evil ones). For me it is enough that you're here, that you're with us in this community, with great passion for computers and servers. Thank you.

Sign In or Register to comment.