Cable Forum

Cable Forum (https://www.cableforum.uk/board/index.php)
-   Security & Virus Discussion (https://www.cableforum.uk/board/forumdisplay.php?f=38)
-   -   Webhost hit by cPanel exploit (https://www.cableforum.uk/board/showthread.php?t=53071)

Paul 27-09-2006 12:11

Webhost hit by cPanel exploit
 
The popular linux [server] control software cPanel got hacked the other day ;

http://www.seopedia.org/internet-mar...-in-mass-hack/

punky 27-09-2006 12:19

Re: Webhost hit by cPanel exploit
 
Thanx for the heads up mate. Just wonder if I should warn my hosting co...

Shame about cPanel though, I really like it.

KingPhoenix 27-09-2006 12:56

Re: Webhost hit by cPanel exploit
 
Unfortunately this is alot worse than made out in Paul's post.

None of I-Webs servers were affected in this bug, we secured the servers as soon as the patch was released. Unfortunately a number of other hosts were victims even before the bug was widely known.

What did the bug do : Well it allowed someone to use the server as their own, allowing them to input code into other peoples files.

Then what? : If a user then visited your site, due to an exploit in IE too, a keylogger was installed into there system.

A key logger? : Yes, it basically logs every key you press and sends it to a remote server. This includes capturing login details for e-mail, online banking etc.

How do i know if i have been affected? : Apparently this site should crash if you are affected http://www.isotf.org/zert/testvml.htm

If that site crashes, then it is highly likely you are affected by this exploit, that was delivered using an exploit in cPanel.


Again, i would just like to clarify that none of the I-Web servers fell victim to this bug.

bopdude 27-09-2006 13:19

Re: Webhost hit by cPanel exploit
 
1 Attachment(s)
Quote:

Originally Posted by KingPhoenix (Post 34124777)
How do i know if i have been affected? : Apparently this site should crash if you are affected http://www.isotf.org/zert/testvml.htm

If that site crashes, then it is highly likely you are affected by this exploit, that was delivered using an exploit in cPanel.


When I try and access that site my AV kicks in with this, does this mean I'm infected or what does it mean ??

Paul K 27-09-2006 13:24

Re: Webhost hit by cPanel exploit
 
Might want to get it checked
http://vil.nai.com/vil/content/v_140629.htm

bopdude 27-09-2006 13:36

Re: Webhost hit by cPanel exploit
 
Quote:

Originally Posted by Paul (Post 34124790)
Might want to get it checked
http://vil.nai.com/vil/content/v_140629.htm

I can't find any trace of it..yet, still searching :tu: of all the days to log onto my online banking :(

Druchii 27-09-2006 13:55

Re: Webhost hit by cPanel exploit
 
Not affected by it.
It's bad to see things such as cPanel, with big jobs to do getting compromised. But it's bound to happen at some point. Let's hope all damage done ca be reverted.

Paul K 27-09-2006 14:16

Re: Webhost hit by cPanel exploit
 
Possibly just a warning that it was detected as you logged into Cpanel Bop, might want to get your host to check the server just in case.

bopdude 27-09-2006 17:09

Re: Webhost hit by cPanel exploit
 
Quote:

Originally Posted by Paul (Post 34124821)
Possibly just a warning that it was detected as you logged into Cpanel Bop, might want to get your host to check the server just in case.

:blush: :blush: :blush: :erm: I take it people are only at risk if they have a site running cpanel then , oops: oops: oops: ( no site )I thought that link was a general 'log on and see' type thing :D :dozey: :dunce: :dunce:

Sorry, but why then would my AV flash up that warning ???

marky 27-09-2006 17:18

Re: Webhost hit by cPanel exploit
 
Oh blummin great, you have just answered a lot of questions :(

Graham M 27-09-2006 17:18

Re: Webhost hit by cPanel exploit
 
Is there a fix for Cpanel then?

Paul K 27-09-2006 17:20

Re: Webhost hit by cPanel exploit
 
KP said in his post that I-web have patched their servers already so a patch must be out there for the problem.

bopdude 27-09-2006 17:23

Re: Webhost hit by cPanel exploit
 
Quote:

Originally Posted by marky (Post 34124961)
Oh blummin great, you have just answered a lot of questions :(

Who did ? me ? you fell for the same thing ???? I'm not alone in the world then :D

marky 27-09-2006 17:27

Re: Webhost hit by cPanel exploit
 
Quote:

Originally Posted by bopdude (Post 34124967)
Who did ? me ? you fell for the same thing ???? I'm not alone in the world then :D

Our servers blocked several ip's at the time this happened, and the site posted here crashes :(

bopdude 27-09-2006 17:29

Re: Webhost hit by cPanel exploit
 
Quote:

Originally Posted by marky (Post 34124972)
Our servers blocked several ip's at the time this happened, and the site posted here crashes :(

I see :(


All times are GMT +1. The time now is 19:46.

Powered by vBulletin® Version 3.8.11
Copyright ©2000 - 2026, vBulletin Solutions Inc.
All Posts and Content are © Cable Forum