Vesta Control Panel - Forum

Community Forum

Skip to content

Advanced search
  • Quick links
    • Main site
    • Github repo
    • Google Search
  • FAQ
  • Login
  • Register
  • Board index
  • Search

Search found 33 matches

Go to advanced search

Advanced search
Search found 33 matches
  • 1
  • 2
  • 3
  • 4
  • Next
by StudioMaX
Thu Jan 31, 2019 8:28 am
Forum: DNS Server
Topic: DNS Flag Day Affect to VestaCP | All domains managed by (Bind) VestaCP are going to STOP WORKING after the 2019
Replies: 1
Views: 5206

Re: DNS Flag Day Affect to VestaCP | All domains managed by (Bind) VestaCP are going to STOP WORKING after the 2019

ping
skurudo wrote:
imperio wrote:
  • Jump to post
by StudioMaX
Thu Apr 12, 2018 3:53 pm
Forum: General Discussion
Topic: Got 10 VestaCP servers exploited
Replies: 548
Views: 1071652

Re: Got 10 VestaCP servers exploited

https://roundcube.net/news/2018/04/11/security-update-1.3.6 but i'm not sure how this can be exploited on Vesta servers, since 'archive' plugin is not activated by default, you must enable it manually by modifying config.inc.php . https://github.com/serghey-rodin/vesta/blob/master/install/rhel/7/ro...
  • Jump to post
by StudioMaX
Thu Apr 12, 2018 3:46 pm
Forum: Общие вопросы
Topic: Возможная уязвимость в Vesta 0.9.8.19
Replies: 236
Views: 239549

Re: Возможная уязвимость в Vesta 0.9.8.19

Code: Select all

HEAD /webmail/
это мы уже видели раньше, а вот ошибка строкой выше... каким образом она могла произойти от обычного HEAD-запроса?

UPD: всё верно, это strict-ошибка из-за неправильного экстенда класса, к нам не относится
  • Jump to post
by StudioMaX
Mon Apr 09, 2018 7:49 am
Forum: General Discussion
Topic: Got 10 VestaCP servers exploited
Replies: 548
Views: 1071652

Re: Got 10 VestaCP servers exploited

We need to format the servers and install again the vests cp from scratch, or the security update solves the problem that exists? Update only solves the security problem with authentication. If the server has already been infected, then it must either be reinstalled, or you need to manually cure it...
  • Jump to post
by StudioMaX
Sun Apr 08, 2018 9:46 pm
Forum: Общие вопросы
Topic: Возможная уязвимость в Vesta 0.9.8.19
Replies: 236
Views: 239549

Re: Возможная уязвимость в Vesta 0.9.8.19

Если бы пароли сбрутили то была бы информация в логах auth.log об успешной авторизации логи можно затереть имея руут думаю как то все связанно с юзером админ пароль который генерируется к нему подходит для руут от бд записывается в многих файликах у меня есть такое мнение что сломали сервера только...
  • Jump to post
by StudioMaX
Sun Apr 08, 2018 9:23 pm
Forum: Общие вопросы
Topic: Возможная уязвимость в Vesta 0.9.8.19
Replies: 236
Views: 239549

Re: Возможная уязвимость в Vesta 0.9.8.19

Если бы пароли сбрутили то была бы информация в логах auth.log об успешной авторизации
  • Jump to post
by StudioMaX
Sun Apr 08, 2018 7:13 pm
Forum: General Discussion
Topic: Got 10 VestaCP servers exploited
Replies: 548
Views: 1071652

Re: Got 10 VestaCP servers exploited

New commits here: https://github.com/serghey-rodin/vesta/commits/master
  • Jump to post
by StudioMaX
Sun Apr 08, 2018 6:47 pm
Forum: General Discussion
Topic: Got 10 VestaCP servers exploited
Replies: 548
Views: 1071652

Re: Got 10 VestaCP servers exploited

https://www.virustotal.com/#/file/48343c96812d4513d7109cb2a2e74c2d983f04e9baf075a47b442fe08dbec825/detection This is for libudev.so, the infected version. We all know this and discussed it on the first pages of this topic. Also, many of us has given access to infected servers to developers, and the...
  • Jump to post
by StudioMaX
Sun Apr 08, 2018 6:39 pm
Forum: General Discussion
Topic: Got 10 VestaCP servers exploited
Replies: 548
Views: 1071652

Re: Got 10 VestaCP servers exploited

However, According to log entries, our network IDS and IPS logs, and a few other tid bits this is the current working theory on our end. We certainly need more servers that have been affected to test with and investigate. Volunteers?????? Unfortunately, we cannot provide our servers simply because ...
  • Jump to post
by StudioMaX
Sun Apr 08, 2018 6:36 pm
Forum: General Discussion
Topic: Got 10 VestaCP servers exploited
Replies: 548
Views: 1071652

Re: Got 10 VestaCP servers exploited

crackerizer wrote: ↑
Sun Apr 08, 2018 2:38 pm
I'm glad to hear. Can't wait to see the commit.
What's with your honeypot? Did you configured the logging of POST request?
  • Jump to post

Search found 33 matches
  • 1
  • 2
  • 3
  • 4
  • Next

Go to advanced search



  • Board index
  • All times are UTC
  • Delete all board cookies
  • The team
Powered by phpBB® Forum Software © phpBB Limited
*Original Author: Brad Veryard
*Updated to 3.2 by MannixMD
 

 

Login  •  Register

I forgot my password