Vesta Control Panel - Forum

Community Forum

Skip to content

Advanced search
  • Quick links
    • Main site
    • Github repo
    • Google Search
  • FAQ
  • Login
  • Register
  • Board index Main Section General Discussion
  • Search

Got 10 VestaCP servers exploited

General questions about VestaCP
Locked
  • Print view
Advanced search
549 posts
  • Page 55 of 55
    • Jump to page:
  • Previous
  • 1
  • …
  • 51
  • 52
  • 53
  • 54
  • 55
ipkpjersi
Posts: 11
Joined: Sun May 13, 2018 12:43 am

Os: Ubuntu 15x
Web: apache + nginx
Re: Got 10 VestaCP servers exploited

Post by ipkpjersi » Sun May 13, 2018 4:30 pm

imperio wrote: ↑
Fri May 11, 2018 7:26 pm
New release with mass security fixes will in Monday or Tuesday
Now we are thinking about the roundcube
That's great to here there will be security fixes on Monday or Tuesday. Is this: https://github.com/serghey-rodin/vesta/issues/1558 included in the fixes?

edit: Yes, it is included! Nice work everyone.
Last edited by ipkpjersi on Mon May 14, 2018 1:33 pm, edited 1 time in total.
Top

scristi
Posts: 30
Joined: Thu Jun 22, 2017 11:20 pm

Re: Got 10 VestaCP servers exploited

Post by scristi » Mon May 14, 2018 1:25 pm

The same problem today, I can´t access Vesta panel and some sites are down (error 500)... waiting the fixes...
Top

pipoy
Posts: 112
Joined: Mon Sep 11, 2017 8:02 am

Os: CentOS 6x
Web: apache
Re: Got 10 VestaCP servers exploited

Post by pipoy » Tue May 15, 2018 1:50 am

scristi wrote: ↑
Mon May 14, 2018 1:25 pm
The same problem today, I can´t access Vesta panel and some sites are down (error 500)... waiting the fixes...
It seems that the attack is over but it doesn't mean your server is not crawling with viruses.

Read the first pages of this thread to remove the virus then your sites should be ok.

Upgrade afterwards or migrate to a new server
Top

ipkpjersi
Posts: 11
Joined: Sun May 13, 2018 12:43 am

Os: Ubuntu 15x
Web: apache + nginx
Re: Got 10 VestaCP servers exploited

Post by ipkpjersi » Tue May 15, 2018 4:44 pm

imperio wrote: ↑
Sun May 13, 2018 7:45 am
Not related
Hi imperio,

I am wondering, the newer version 0.9.8-21 was supposed to be released Monday or Tuesday and it is Tuesday now and I think it is not released: https://i.imgur.com/Z06oSRK.png

Are there still plans for releasing it today, or would it be later in the week like Wednesday or Thursday?

Thanks.
Top

mephivio
Posts: 198
Joined: Thu Mar 27, 2014 7:35 am

Os: Debian 8x
Web: nginx + php-fpm
Re: Got 10 VestaCP servers exploited

Post by mephivio » Thu May 17, 2018 6:15 pm

the new release R21 is live
Please update your platform and test ....
Top

ipkpjersi
Posts: 11
Joined: Sun May 13, 2018 12:43 am

Os: Ubuntu 15x
Web: apache + nginx
Re: Got 10 VestaCP servers exploited

Post by ipkpjersi » Thu May 17, 2018 9:01 pm

mephivio wrote: ↑
Thu May 17, 2018 6:15 pm
the new release R21 is live
Please update your platform and test ....
Are you sure? It doesn't seem like R21 is live: https://i.imgur.com/NGPFvVL.png

edit: Oh, it says it is "updated" not "outdated" but I can still apply the updates.
Top

Falzo
Posts: 60
Joined: Mon Mar 28, 2016 8:49 am

Re: Got 10 VestaCP servers exploited

Post by Falzo » Fri May 18, 2018 6:50 pm

Farrow wrote: ↑
Wed May 09, 2018 11:05 am
It worries me that no one knows for sure how the panel became exploited in the first place.
this sadly is not true. some are well aware of how that was possible and what has been the initial vector at least, but were waiting for Serghey to release a true patch and make an official announcement.
sadly those informations have never been released to the public.
as far as I can tell, in the end the vesta-nginx and closing the port 8083 got nothing to do with it _and_ would most likely not even have protected against a second attack.

For the moment I'll leave it to Serghey to man up and tell the full story, now that the automatic vesta update should have run through and done it's work.
Top

Farrow
Posts: 15
Joined: Fri May 16, 2014 4:15 pm

Re: Got 10 VestaCP servers exploited

Post by Farrow » Fri May 18, 2018 8:11 pm

Falzo wrote: ↑
Fri May 18, 2018 6:50 pm
Farrow wrote: ↑
Wed May 09, 2018 11:05 am
It worries me that no one knows for sure how the panel became exploited in the first place.
this sadly is not true. some are well aware of how that was possible and what has been the initial vector at least, but were waiting for Serghey to release a true patch and make an official announcement.
sadly those informations have never been released to the public.
as far as I can tell, in the end the vesta-nginx and closing the port 8083 got nothing to do with it _and_ would most likely not even have protected against a second attack.

For the moment I'll leave it to Serghey to man up and tell the full story, now that the automatic vesta update should have run through and done it's work.
Possible??? or certain???
If we are waiting for a "true patch" then I guess you would advise no one to use Vesta Panel because it's still a security risk correct?
Top

Falzo
Posts: 60
Joined: Mon Mar 28, 2016 8:49 am

Re: Got 10 VestaCP servers exploited

Post by Falzo » Fri May 18, 2018 9:00 pm

Farrow wrote: ↑
Fri May 18, 2018 8:11 pm
Falzo wrote: ↑
Fri May 18, 2018 6:50 pm
Farrow wrote: ↑
Wed May 09, 2018 11:05 am
It worries me that no one knows for sure how the panel became exploited in the first place.
this sadly is not true. some are well aware of how that was possible and what has been the initial vector at least, but were waiting for Serghey to release a true patch and make an official announcement.
sadly those informations have never been released to the public.
as far as I can tell, in the end the vesta-nginx and closing the port 8083 got nothing to do with it _and_ would most likely not even have protected against a second attack.

For the moment I'll leave it to Serghey to man up and tell the full story, now that the automatic vesta update should have run through and done it's work.
Possible??? or certain???
If we are waiting for a "true patch" then I guess you would advise no one to use Vesta Panel because it's still a security risk correct?
certain.

the v21 update is supposed to have now finally fixed that (amongst other things), but until yesterday probably a lot of installations were still vulnerable - regardless if the vesta service was up or not.

as I am no security expert like Patrick or others, I won't advise anything here. just saying that I (still) use Vesta a lot and I am grateful for it's existance. but I certainly don't like the way such security issues are handled. even if it's free software people rely on it being trustworthy which requires open and honest communication and not leaving hundreds or thousands of servers running vulnerable for more than a month ...
Top


Locked
  • Print view

549 posts
  • Page 55 of 55
    • Jump to page:
  • Previous
  • 1
  • …
  • 51
  • 52
  • 53
  • 54
  • 55

Return to “General Discussion”



  • Board index
  • All times are UTC
  • Delete all board cookies
  • The team
Powered by phpBB® Forum Software © phpBB Limited
*Original Author: Brad Veryard
*Updated to 3.2 by MannixMD
 

 

Login  •  Register

I forgot my password