חזרה לפיד
newsמקור: The Hacker News2.9.2026

חטיפת BGP: עדכון Virtualizor זדוני מעניק גישת רוט קבועה

BGP Hijack Delivers Malicious Virtualizor Update That Establishes Persistent Root Access

חטיפת BGP: עדכון Virtualizor זדוני מעניק גישת רוט קבועה

◆ סיכום AI

תוקפים השתמשו בחטיפת BGP כדי להפנות תעבורת עדכונים של Softaculous. כך הם הפיצו חבילת Virtualizor זדונית שהתקינה גישת רוט קבועה. האירוע הוביל לפריצה ברמת רוט למספר שרתי Hypervisor.

# מהמקור

Virtualizor said hackers used a Border Gateway Protocol (BGP) hijack to divert Softaculous traffic. The hackers then used the diverted update traffic to deliver a malicious Virtualizor package to some installations. A hosting-provider account separately said 5 of its 34 checked Virtualizor hypervisors sustained root-level compromise. The incident window ran from approximately August 28 at 20:57

#supply-chain-attack#bgp-hijack#root-access#virtualization-security
קרא במקור