Webhost hack wipes out data for 100,000 sites

Vaserv suspects zero-day virtualization vuln

By Dan Goodin in San Francisco • Get more from this author

Posted in Small Biz, 8th June 2009 20:02 GMT

A large internet service provider said data for as many as 100,000 websites was destroyed by attackers who targeted a zero-day vulnerability in a widely-used virtualization application.

Technicians at UK-based Vaserv.com were still scrambling to recover data on Monday evening UK time, more than 24 hours after unknown hackers were able to gain root access to the company's system, Rus Foster, the company's director told The Register. He said the attackers were able to penetrate his servers by exploiting a critical vulnerability in HyperVM, a virtualization application made by a company called LXLabs.

"We were hit by a zero-day exploit" in version 2.0.7992 of the application, he said. "I've heard from other people they've been hit by the same thing."


read the full article online:

http://www.theregister.co.uk/2009/06/08/webhost_attack/




related information ....


LxLabs boss found hanged after vuln wipes websites:

http://www.theregister.co.uk/2009/06/09/lxlabs_funder_death/
http://timesofindia.indiatimes.com/Bangalo...how/4633101.cms


Sabu