LowEndBox - Cheap VPS, Hosting and Dedicated Server Deals

Hosterlabs Confirms Data Breach

Tags: , , , , , , , Date/Time: June 23, 2021 @ 4:38 pm, by raindog308

Hosterlabs LogoHosterlabs announced today that on June 21st they “experienced an intrusion” in which unidentified attackers “placed malware on our servers, and by doing so gained access to our customers’ data”. The vector used was apparently a WordPress vulnerability in their main site.

The hackers attempted to extort Hosterlabs, threatening to expose the customer database if payment was not made, but management declined to pay and restored from backups. They have since remediated the vulnerability and amped up security.

“We have added further firewalls, active monitoring and we are working as of now with law enforcement to track the perpetrators of the crime,” they said in their announcement. “We have notified the FBI and we expect to do forensics on our servers, for which we have backed up all logs and accesses.”

You can read the full announcement on LowEndTalk.

Hosterlabs has shared some unique offers on LowEndBox, with a strong focus on green hosting and sustainable practices.  It’s unfortunate they were targeted in this attack and we hope they recover quickly.

I'm Andrew, techno polymath and long-time LowEndTalk community Moderator. My technical interests include all things Unix, perl, python, shell scripting, and relational database systems. I enjoy writing technical articles here on LowEndBox to help people get more out of their VPSes.

No Comments

    Leave a Reply

    Some notes on commenting on LowEndBox:

    • Do not use LowEndBox for support issues. Go to your hosting provider and issue a ticket there. Coming here saying "my VPS is down, what do I do?!" will only have your comments removed.
    • Akismet is used for spam detection. Some comments may be held temporarily for manual approval.
    • Use <pre>...</pre> to quote the output from your terminal/console, or consider using a pastebin service.

    Your email address will not be published. Required fields are marked *