Web Host Hacked Via Virtualization Tool

A hack at a UK web host that has wiped out as many as 100,000 sites has highlighted the risks of exploits targeting virtualization software.

1 Min Read
ITPro Today logo in a gray background | ITPro Today

Virtualization security risk is a topic that has often been discussed in worrisome "what if" scenarios. It looks like "what if" just became reality for customers of a UK web hosting company. The Register reported yesterday that VAserv.com was trying to recover 100,000 customer web sites that were wiped out when intruders gained root access to their system, apparently through a zero-day exploit in virtualization management software.

VAServ.com director Rus Foster told the Register that the company's servers were exploited through a critical vulnerability in HyperVM, a virtualization application made by a company called LXLabs. Many of the deleted accounts were on an unmanaged service that didn't provide backups. 

UPDATE: There's a sad and shocking new twist. The head of HyperVM developer LXLabs has been found dead in a suspected suicide. The Times of India has an article on the death of LX Labs ownerKT Ligesh that suggests the executive may have been troubled about issues unrelated to the VAServ issue. Reuven Cohen shares some memories of Ligesh.

Read more about the VAserv story at The Registerfor more. For additional perspectives on virtualization-related security, see coverage at CNet , Network World and Burton Group.

Read more about:

Data Center Knowledge

About the Author

Data Center Knowledge

Data Center Knowledge, a sister site to ITPro Today, is a leading online source of daily news and analysis about the data center industry. Areas of coverage include power and cooling technology, processor and server architecture, networks, storage, the colocation industry, data center company stocks, cloud, the modern hyper-scale data center space, edge computing, infrastructure for machine learning, and virtual and augmented reality. Each month, hundreds of thousands of data center professionals (C-level, business, IT and facilities decision-makers) turn to DCK to help them develop data center strategies and/or design, build and manage world-class data centers. These buyers and decision-makers rely on DCK as a trusted source of breaking news and expertise on these specialized facilities.

Sign up for the ITPro Today newsletter
Stay on top of the IT universe with commentary, news analysis, how-to's, and tips delivered to your inbox daily.

You May Also Like