Results 11 to 13 of 13
Threaded View
-
10th May 2009, 10:47 AM #1OPMemberWebsite's:
viz0n.net SolidNode.com r00tsecurity.org0day HyperVM Alert
Anyway, for those who do not know already, I've been hosting h4cky0u on a VPS as a temporarry thing, and yesterday they got hacked in a very secure environment. I have narrowed the hack to an 0day in HyperVM.
BASIC SETUP:
- uploading disabled(PHP)
- chroot environment(no access to system binaries, perl, ect...)
- heck load of php functions disabled
- no ftp, sendmail ect... only had HTTPD running
I found a shell chown'd as root:root which does not happen unless you upload via root or from a GUI/Panel like HyperVM. When I attempted to log into HyperVM, I noticed that the password was changed and noticed a lot of strange IPs had accessed the system.
I've not had the chance to document this hack completely, but all I am pretty damn sure that the hack did start from the HypderVM Panel.Viz0n Reviewed by Viz0n on . 0day HyperVM Alert Anyway, for those who do not know already, I've been hosting h4cky0u on a VPS as a temporarry thing, and yesterday they got hacked in a very secure environment. I have narrowed the hack to an 0day in HyperVM. BASIC SETUP: - uploading disabled(PHP) - chroot environment(no access to system binaries, perl, ect...) - heck load of php functions disabled - no ftp, sendmail ect... only had HTTPD running I found a shell chown'd as root:root which does not happen unless you upload via root or Rating: 5******** ▌| SolidNode.com - *QUALITY OFFSHORE* [100+ clients strong]
******** ▌| For official support, please e-mail support@solidnode.com.
******** ▌| We run well managed servers with Basic DDoS Protection.
******** ▌| We also do Server/Site Management/Setup
Sponsored Links
Thread Information
Users Browsing this Thread
There are currently 1 users browsing this thread. (0 members and 1 guests)
Similar Threads
-
HyperVM Doubts please help me!
By mastergun in forum Webmaster ResourcesReplies: 1Last Post: 1st Jul 2012, 05:39 AM -
HyperVM XEN Issue
By Joseph in forum Server ManagementReplies: 4Last Post: 19th Jan 2012, 07:00 AM -
Hypervm > Kloxo
By desiboy in forum Server ManagementReplies: 7Last Post: 16th Jul 2009, 12:20 PM -
HyperVM
By SplitIce in forum Server ManagementReplies: 4Last Post: 1st Jul 2009, 03:16 AM
themaLeecher - leech and manage...
Version 5.04 released. Open older version (or...