BGP Hijack Delivers Malicious Virtualizor Update That Establishes Persistent Root Access

Image: BleepingComputer
ad slot · in-content video 16:9
Coverage
Coverage
- Hackers delivered malicious updates to the Virtualizor VPS management software after hijacking BGP routing for its update infrastructure and redirecting update requests to malicious servers. [...]
- What can we learn from a BGP hijacking that poisoned production software? Plenty.
- Using a technically valid TLS certificate for Softaculous’ domains, a threat actor diverted traffic to fake software updates. The post Malicious Virtualizor Update Served via BGP Hijacking appeared first on SecurityWeek .
More coverage
- Virtualizor said hackers used a Border Gateway Protocol (BGP) hijack to divert Softaculous traffic. The hackers then used the diverted update traffic to deliver a malicious Virtualizor package to some installations. A hosting-provider account separately said 5 of its 34 checked Virtualizor…