Subj : Re: nosupportlinuxhosting - hacked
To   : August Abolins
From : Jay Harris
Date : Wed Feb 10 2021 06:57 pm

On 10 Feb 2021, August Abolins said the following...

AA> I thought linux-based servers were generally impervious to
AA> hacks.  Is this a sign of more events like this to come?

It really depends on what happened and how you define "hack".  Anyone can have a linux server on the internet, but if your username is "root", your password is "password" and your SSH port is exposed to the internet, some script kiddie will be in your system in as little as 30 minutes.

My guess is nosupportlinuxhosting.com's backend infrastructure was breached somehow so that hackers had access to all of their customer's systems.

AA> All customers should immediately download backups of their websites
AA> and databases through cPanel.

cPanel has been having all kinds of problems, the most recent one is a 2FA bypass vulnerability:

https://www.recordedfuture.com/cpanel-whm-vulnerability/

I could imagine that may have something to do with their shutdown.


Jay

--- Mystic BBS v1.12 A47 2021/02/01 (Raspberry Pi/32)
* Origin: Northern Realms (1:229/664)