-
Web Host Hacked Via Virtualization Tool
June 9th, 2009 : Rich MillerVirtualization security risk is a topic that has often been discussed in worrisome “what if” scenarios. It looks like “what if” just became reality for customers of a UK web hosting company. The Register reported yesterday that VAserv.com was trying to recover 100,000 customer web sites that were wiped out when intruders gained root access to their system, apparently through a zero-day exploit in virtualization management software.
VAServ.com director Rus Foster told the Register that the company’s servers were exploited through a critical vulnerability in HyperVM, a virtualization application made by a company called LXLabs. Many of the deleted accounts were on an unmanaged service that didn’t provide backups.
UPDATE: There’s a sad and shocking new twist. The head of HyperVM developer LXLabs has been found dead in a suspected suicide. The Times of India has an article on the death of LX Labs ownerKT Ligesh that suggests the executive may have been troubled about issues unrelated to the VAServ issue. Reuven Cohen shares some memories of Ligesh.
Read more about the VAserv story at The Registerfor more. For additional perspectives on virtualization-related security, see coverage at CNet , Network World and Burton Group.
Well spotted – to clarify the 0-day was in the management layer rather than the hypervisor itself… I was hoping for the latter so as people would start to take the issue seriously.
Anyway the management layer is certainly the soft underbelly of cloud computing… it needs to be well (which is to say, better) protected.
Sam
B James
Posted June 10th, 2009Virtualization and a hack wiping things out is no more or less a security issue then if someone gains access to large central storage systems in use in data centers and the ability to destroy large amounts of data. There are many “soft” sides to data, and while virtualization is rather new (outside of the mainframe arena) its by far not the weakest link…
Site web piraté pour cause de virtualisation
Posted June 11th, 2009[...] http://www.datacenterknowledge.com/archives/2009/06/09/web-host-hacked-via-virtualization-tool/ [...]
RESOURCE LINKS:
