New on LowEndTalk? Please Register and read our Community Rules.
All new Registrations are manually reviewed and approved, so a short delay after registration may occur before your account becomes active.
All new Registrations are manually reviewed and approved, so a short delay after registration may occur before your account becomes active.

Comments
Probably because it's not easy for a provider to completely switch platform and tooling
in a matter of days. Everything can have vulnerabilities, both Xen and KVM had a few
last month as well, the question is how they deal with situations like this.
The cumulative number of disclosed CVE vulnerabilities in the VMware ecosystem far exceeds that of KVM. Since major public cloud providers build their multi-tenant environments on KVM architecture, KVM has undergone extremely rigorous security testing, and the frequency of ultra-high-risk vulnerabilities that allow "direct penetration to the host kernel" is significantly lower than that of VMware.
So what measures have you taken now to prevent such issues from occurring again in the future?
I did face yesterday. Today working.
I would also like to know this.
If you read through all my previous replies, you’ll see I stated from the start that data loss resulting from a security breach is entirely acceptable; as consumers, we should always maintain our own backups rather than relying on the provider.
My main issue has always been Hostdzire’s decision to simply reassign random IPs in order to speed up recovery. Keep in mind that the context here was a server reconfiguration necessitated by a breach—not a data center migration or an IP re-addressing scheme.
To expedite recovery, they could have easily assigned random IPs from a pool of unallocated subnets that existed prior to the breach, allowing customers to manually switch back to their original IPs later if needed. Unfortunately, that isn't the path they chose. Perhaps it was a cost consideration, a lack of sufficient unallocated subnets to support that approach, or some other factor.
1. The affected service was located in India, not the Netherlands.
2. I don't care about the data loss; my only concern is the original IP address.
3. They have decades of experience, yet the emergency response plan implemented following this breach struck me as chaotic—more like a series of ad-hoc decisions.
Regardless, what they need to do now is promptly analyze and fully disclose the cause of the incident and the current remediation steps, while also preparing contingency plans for various scenarios. If possible, they should also adjust pricing to reflect current hardware market rates—doubling, tripling, or even quadrupling prices. Only with sufficient profit margins can they realistically aim for stability, security, and efficiency.
I agree with your point. However, in the current market, they are merely a microcosm; the ceiling for service quality at this price point is inevitably limited to this level.
bolox media
Context please?
@VeloxMedia
What does he have to do with Hostdzire?
Everytime a LET host has a security incident, the volox signal illuminates the night sky.
Eric pulls up his whitey tighties and spins up a new account to crashout on LET.
You are totally right about assigning random IP.
We knew this would make uphappy some clients,
But mostly people do care about exact same IP, they do care about same IP range for sure.
But there are still few client who wants exactly same IP like you, thats why oroginal approrch was to assign same IP, but it was causing more time.
But unfortunately that didnt work due to time taking process,
It was going to take like one week to assign all vps if we went that way.
I am sorry that this decision effected you alot.
Any chance to get IPv6 in India since you are redoing things anyway?
I think your just shopping in the wrong window. This is "Low End Talk" and things are supposed to be cheap, with providers cutting corners to keep prices down. Servers here are cheap, but you have to accept occasional IP renumbering, noisy neighbours, inconvenient maintenance windows, less than perfect uptime and possible data loss as part of the package.
If you want to pay double, triple or even quadruple the price then there's established providers that serve that market, but they don't advertise here. The truth is you should be angry at yourself for putting a production workload on a Low End server without a proper disaster and recovery plan because there servers are cheap for a reason.
If you want to pay double, triple or even quadruple the price then there's established providers that serve that market, but they don't advertise here. The truth is you should be angry at yourself for putting a production workload on a Low End server without a proper disaster and recovery plan because there servers are cheap for a reason.
**
I think this comment must be made as a STICKY somewhere in the forum. I am extremely angry at myself after putting a 2 year long worth of production workload at a cheap server without a disaster management plan. I LOST it , not millions of dollars but yes it is in low four figures !
I was a happy man using shared hosting . Most of the good providers have Acronis/JetBackup and I was able to get the data back in case of personal fukups . And Murphy got behind me just when the pants were down. I had just put my site 2 days before the incident and wiped the old server.
The price of leaseweb vps was similar to hostdzire.
You can also do your own backup just using bash scripts , and download the backup locally
It's not that difficult .
It's not about difficulty . It is about sheer laziness. I have storage from Koofr/NetDynamics24 but they were not configured.
I bought native HostDzire VPS due to Indian location (which is important for my project) over Leaseweb.
You simply don’t understand.
These servers come with 16H/32GB/240GB, yet the annual fee is only $32. Do you see any problem with raising the price?
Yes, price should stay the same until 2099.
No, you don't understand. People here want cheap servers and are willing to accept the trade-offs. There's plenty of providers that will charge you more, and some of them will offer you better reliability and security etc. But this is Low End Talk and here you buy Low End servers at rock bottom prices. So if you ran a production workload on a server you're paying less than $3/month without a disaster and recovery plan that's on you.
VPS Compensation Options
Following the recent VMware infrastructure incident
Hello Everyone,
First of all, we want to sincerely apologize once again for the disruption and loss of service caused by the recent incident.
We understand that this has caused significant inconvenience, and we also understand that no amount of compensation can truly make up for the impact this incident may have had on your business, applications, or services.
After carefully reviewing the situation and what we are financially able to provide, we would like to offer the following compensation to customers whose VMware VPS services were affected.
Compensation
Important: Compensation & Renewal Date
The additional service time will be added to your existing service period, and your next renewal date will be extended accordingly within the next few days.
If you do not see the updated renewal date after one week, please open a support ticket and our team will check and update it for you.
A Note From Us
We know that some customers may feel that this compensation is not enough, and we completely understand that perspective.
If it were financially possible for us to offer more, we would genuinely like to do so.
However, this incident has already resulted in a very significant financial impact on our company, including the cost of rebuilding the affected infrastructure, replacing resources, and restoring services.
Offering compensation beyond the above would unfortunately not be financially sustainable for us at this time.
We have tried to find a balance between acknowledging the disruption caused to our customers and ensuring that HostDZire remains financially capable of continuing operations and supporting everyone going forward.
This compensation is therefore our best possible offer under the current circumstances.
We sincerely apologize for what happened, for the downtime, for the disruption to your services, and for the time it has taken to restore everything.
We are truly grateful to those who have continued to support us during this extremely difficult situation. We will continue working to rebuild your trust through our actions and by making our infrastructure more secure and resilient going forward.
Kind Regards,
HostDZire Team
Compensation is a really good gesture!!
but binding it to the contract like this does not make sense. The downtime was the same for anyone, so why would monthly paying people (who probably even pay the most for the same ressources) get less than a 3y cheapskate?
https://en.wikipedia.org/wiki/Time_value_of_money
@HostDzire could you humbly look at your messages when possible. Trying to get a box from you whenever you wake up and log back in.
@HostDZire I requested Debian 13 Template for OS Reinstall via ticket #179938.
@HostDZire Debian 13 Template for OS Reinstall
Can you show solid evidence for that?
That may (or may not) be the case but at the end of the day it's kind of a lottery with all hypervisors and OSs. None of them were designed and built following/using secure principles, standards, and tools/chains.
The way I see it, based on quite some experience is: there are the vulnerabilites that were already found and those not yet found
Yes and No. Yes, this is "Low End Talk" and things are supposed to be cheap, but No, paying more or even much more does not translate to quality or reliability, at least in many cases.
Also, where is the community for those expensive or even super-expensive providers, where can I get reliable information?
Besides, many (most?) of us do not even look for high grade professional hosting. We look for cheap hosting for small/side/hobby/private projects that just need a reasonably good space on the internet, and frankly, even if they aren't reachable/available for a couple of hours per month or even a few days per year, so what? (~ "life will go on").
The true reason this accident created days of off-time/failure was not the accident per se (ransomware) but the fact that @HostDZire seems to not have had infra backups.
AFAIC I'm not even angry at all, what I was looking for was how they reacted. Because, you see, everybody can fail occasionally, what separates us though is whether and what we learn from a failure; there are those who just continue as usual (after rebuilding) and those who learn and adapt, in this case e.g. by from now on making infra backups.
HostDZire did learn and adapt plus he even offers some compensation. I do not see any reason at all to not consider them a top-provider with extremely attractive deals.
Hopefully tomorrow, we had debian 13 already but it has some issue.
We will fix it and enable it.
@HostDZire — it is enough for me that you offer and keep really cheap servers to this community; I don't need any compensation. Accidents can happen, especially in an age when AI evolves so much and so fast (for good people, but also for evil ones). For me it is enough that you're here, that you're with us in this community, with great passion for computers and servers. Thank you.