Forums: Talk it up at our online community forums!Hello, Guest! (Register)
Broadcasting World Logo
Latest: HyperVM/Kloxo Vulnerability
June 09, 2009 - Posted By James

A large amount of webhosts and streaming hosts have been shut down today after data for as many as 100,000 websites was destroyed by attackers who targeted a zero-day vulnerability in a widely-used virtualization application.

Technicians at UK-based Vaserv.com were still scrambling to recover data on Monday evening UK time, more than 24 hours after unknown hackers were able to gain root access to the company's system, Rus Foster, the company's director told The Register. He said the attackers were able to penetrate his servers by exploiting a critical vulnerability in HyperVM, a virtualization application made by a company called LXLabs.

"We were hit by a zero-day exploit" in version 2.0.7992 of the application, he said. "I've heard from other people they've been hit by the same thing."

Foster said he's been unable to reach anyone at LXLabs to discuss the suspected vulnerability. Broadcasting World has also received no response to inquiries sent to the company, which according to its website is located in Bangalore.

6:19AM Update: Software company owner K T Ligesh, 32, was found hanging in his house. He was also deeply upset his company, Lx Labs, in HSR Layout, 6th Sector, had recently lost a project to another company. The police said Ligesh, son of Dr Sreedharan of Kannur, Kerala, was a brilliant software engineer who came to the city about four years ago. He set up his company which was doing quite well and stayed with a friend Sheenu in the same house where his company was located.

4:59PM Update:
Mixstream's billing system, support area and control panel area is experiencing a major outage. BellOnline (Parent Company) has released this statement...
"If you require support or need your AutoDJ stream turning off then please email belltemporary@live.co.uk and we will get back to you as soon as we can. We apologise for any inconvenience caused by the outage of our support area and control panel, but this is not affecting customer web hosting accounts, shoutcast servers or any other service - it only affects our websites. "

8:40PM Update:
iWebFusion has had no attacks but they have DISABLED HyperVM/Kloxo. iWebFusion has released the following...
"When we deem it safe enough to bring the interface back up, we will notify you. In the meantime if you need your VPS rebooted please send an email to support@iwebfusion.net or login to our support desk at http://billing.iwebfusion.net . Just to clarify with everyone, VPSs are NOT shut down. ONLY the HyperVM interface has been shut down."

10:55PM Update: Multiple Security issues have been discovered in hyperVM and Kloxo, and we have fixed all the remotely exploitable ones, and also the ones that can be exploited via the web interface. Please update hyperVM/Kloxo to the latest.

Is your website or stream down? Post a comment below including the host you are with, we will be contacting all hosts reported in our comments to provide up-to-date reports on the issue.

Thanks To...
http://timesofindia.indiatimes.com/Bangalore/Techie-hangs-himself-in-HSR-Layout-/articleshow/4633101.cms






Comments


THFS - June 12, 2009

I would like to point out that much of the information here is false. I do suggest you read up a bit more about the HyperVM issue.
James - June 13, 2009

http://forum.lxlabs.com/index.php?t=msg&goto=67091#msg_67091
THFS - June 24, 2009

That is actually outdated information. If you look here, http://forum.lxlabs.com/index.php?t=thread&frm_id=56& you can see that there are many different problems, and because the owner is dead nothing has been fixed yet... ONCE AGAIN, DO NOT ENABLE HYPERVM!!!

Add Your Opinion, Unregistered!


Name
Comment
  characters left


Add A Comment

Post a comment about this news article by filling out the form on the left. Please do not post spam links, personal info, personal threats or anything against our forum rules in comments.


advertisement

Setting Up Audacity Preferences

Before beginning a recording project in Audacity, it's necessary to set the Audacity preferences in the Edit Preferences dialog box.

This ensures that the sound source and playback options are set correctly as well as bit-rate, quality indicators and more. Follow this step by step procedure to setup your computer for Audacity.
Read More...





Get Social!

Add us on all your favorite social networking sites including Myspace, Twitter and Facebook! Check up daily to score awesome random prizes and to get some free promotion!

About Us Advertise Logos & Banners Privacy Policy Contact Us
Broadcasting World Copyright 2010 Broadcasting World