[Security Advisory] Breach in Live Chat support of Virtualizor

mikhomikho AdministratorOG

Got this email….

Take care out there

——

Dear Clients,

We hope this email finds you well. We are reaching out to inform you of a possible security breach in our live chat account. If you have ever provided your root details on Live Chat and still use the same password, we request you to change it immediately.

Recently, we detected unauthorized installations of XMRig on servers whose credentials were provided via live chat. To safeguard your account and infrastructure, we strongly recommend changing your passwords immediately.

To enhance security, we have permanently removed all past chat records and will no longer accept server credentials via live chat. Moving forward, please provide any necessary server credentials through our support ticket system instead.

This incident was limited only to the live chat support system for Virtualizor, and no other support systems have been affected.

We sincerely apologize for the inconvenience and are taking stringent measures to prevent such occurrences in the future. Your security remains our top priority.

If you have any questions or need further assistance, please reach out to our support team.

Best regards,
Virtualizor Team

“Technology is best when it brings people together.” – Matt Mullenweg

Thanked by (3)Blembim FrankZ treesmokah

Comments

  • MichaelCeeMichaelCee Hosting ProviderOGServices Provider

    People were sending passwords in live chat? AND not changing them after?

  • mikhomikho AdministratorOG
    edited February 20

    @MichaelCee said:
    People were sending passwords in live chat? AND not changing them after?

    The last idiot is yet to be born. 🤷🏻

    Thanked by (1)host_c

    “Technology is best when it brings people together.” – Matt Mullenweg

  • AuroraZeroAuroraZero ModeratorHosting ProviderRetired

    @mikho said:

    @MichaelCee said:
    People were sending passwords in live chat? AND not changing them after?

    The last idiot is yet to be born. 🤷🏻

    MITM attack?

  • @MichaelCee said:
    People were sending passwords in live chat? AND not changing them after?

    Its even worse than that, Virtualizor was apparently asking people for these passwords on livechat...

  • I don't understand how these incompetent companies grow so much.

  • edited February 21

    @imok said:
    I don't understand how these incompetent companies grow so much.

    Price and skill level.
    Its cheap and easy to use, that's it.

    Thanked by (1)host_c
  • host_chost_c Hosting Provider

    @treesmokah said:

    @imok said:
    I don't understand how these incompetent companies grow so much.

    Price and skill level.
    Its cheap and easy to use, that's it.

    Spot on :+1:

    Plus QC ( quality check ) died by the end of 2010 give or take a few years .

    Who cares if it has a few bugs, is it chap - yes, does it have nice buttons - yes , then it is perfect

    Host-C - VPS & Storage VPS Services – Reliable, Scalable and Fast - AS211462

    "If there is no struggle there is no progress"

Sign In or Register to comment.