newsמקור: The Hacker News2.9.2026
חטיפת BGP: עדכון Virtualizor זדוני מעניק גישת רוט קבועה
BGP Hijack Delivers Malicious Virtualizor Update That Establishes Persistent Root Access

◆ סיכום AI
תוקפים השתמשו בחטיפת BGP כדי להפנות תעבורת עדכונים של Softaculous. כך הם הפיצו חבילת Virtualizor זדונית שהתקינה גישת רוט קבועה. האירוע הוביל לפריצה ברמת רוט למספר שרתי Hypervisor.
# מהמקור
Virtualizor said hackers used a Border Gateway Protocol (BGP) hijack to divert Softaculous traffic. The hackers then used the diverted update traffic to deliver a malicious Virtualizor package to some installations. A hosting-provider account separately said 5 of its 34 checked Virtualizor hypervisors sustained root-level compromise. The incident window ran from approximately August 28 at 20:57
#supply-chain-attack#bgp-hijack#root-access#virtualization-security
קרא במקור