Abundance of Caution: If You are a MXroute Customer, Take Action
Sep 06, 2022 @ 6:00 am
/
/
In a textbook example of good customer service and proper crisis management (even though this is no crisis), MXroute founder and former LowEndTalk administrator @jar disclosed the following:
Github’s documentation is unclear, but based on a message just received in my account’s security log, it is possible that my Github password was compromised.
There’ some reason to think this may be a GitHub issue rather than a anything that happened to @jar. More discussion on LowEndTalk.
To be clear, it’s a long way between someone’s personal account and anything related to MXroute, so this is an abundance of caution situation, not a reason to panic.
Would I buy from MXroute again? You bet. They’ve been a community favorite since 2013.
In fact, I just noticed they’re still offering their lifetime promo, which is a pretty awesome deal.

Raindog308 is a longtime LowEndTalk community administrator, technical writer, and self-described techno polymath. With deep roots in the *nix world, he has a passion for systems both modern and vintage, ranging from Unix, Perl, Python, and Golang to shell scripting and mainframe-era operating systems like MVS. He’s equally comfortable with relational database systems, having spent years working with Oracle, PostgreSQL, and MySQL.
As an avid user of LowEndBox providers, Raindog runs an empire of LEBs, from tiny boxes for VPNs, to mid-sized instances for application hosting, and heavyweight servers for data storage and complex databases. He brings both technical rigor and real-world experience to every piece he writes.
Beyond the command line, Raindog is a lover of German Shepherds, high-quality knives, target shooting, theology, tabletop RPGs, and hiking in deep, quiet forests.
His goal with every article is to help users, from beginners to seasoned sysadmins, get more value, performance, and enjoyment out of their infrastructure.
You can find him daily in the forums at LowEndTalk under the handle @raindog308.
Just to be clear in every place that I can: I am overly cautious and paranoid about my security and that of my customers. There was no reason for me to reveal anything publicly because quite literally nothing noteworthy occurred. Someone gained one of my very few reused passwords, and it just happened to be that it was used on GitHub because that account wasn’t considered to be important when I created it.
No unauthorized access to anything can be found. Just one failed login attempt at GitHub thwarted by two factor authentication.
Me being me, I’ll obsess over it and I still rotated everything of value just because I can.
TOUGHEST FELLA IN LETTERKENNY!
[k]