Web Hosting Talk







View Full Version : Alabanza Control Panel Hacked???


DC
09-27-2000, 01:29 AM
Hello,

I am a reseller for an Alabanza host and I received this notice Monday.

<This morning we discovered that several domains had
been added to your nameservers via the Virtual
Nameservers option on your control panel. This has
resulted in several of these domains being redirected
to a porn site and created a serious business
situation for those domains involved. Until these
issues can be resolved, we have disabled SSH access
for your account and changed the password on the
control panel for your account. If you have any
information on how this information was entered
against your nameservers, or if you feel that your
username and password might have been compromised, or
if any third party was allowed access to your account,
please forward it to us>

-------------------------------
How could something like this happen, NO-ONE knows my password?
-------------------------------

Later that day I received the following.

<Our apologies for restricting access to the account
while we sorted out the issues associated with this.
We have found the culprit, who happened to use your
control panel as the entry point, and are taking
appropriate action. We are enabling SSH access for
MY-ACCOUNT NAME.net - please let us know if for any reason
you are unable to get shell access.

Thanks for your patience in this matter.>

----------------------------------------
Could this be a problem down the road, is it that easy to break into a control panel like Alabanza's?

BC
09-27-2000, 01:39 AM
DC,

This sounds like it's related to a security hole someone on this forum found and posted to BugTraq a few days ago. We had a red-hot topic running on this - check out http://www.webhostlink.com/showthread.php?threadid=2134 and some of the other Alabanza topics on this forum, and you'll start wondering....

akashik
09-27-2000, 02:00 AM
Ummm...

<snips a long babble that's already been covered in that other thread>

No use flogging a dead horse right?
*grin*

Greg Moore
http://www.akashik.net

BC
09-27-2000, 02:03 AM
Quite true. The new problem is, however, that although all's been said and done on this forum, the bug has been spilt from BugTraq on to other forums now (regular visitors of other fora will know precisely which forum I'm referring to) and the longer Alabanza leaves it, the more problems it will cause for other Alabanza hosters.

DC
09-27-2000, 04:04 AM
Hello,

Thanks for the information!!!

abcweb
09-27-2000, 07:21 AM
I am currently reseller for coolreseller.com and they have disabled the Virtual name Server icon for about 2 days now. have all Alabanza hosts disabled this option or is it just CoolReseller?

Regards,

Dreas van Donselaar
The Netherlands

Marty
09-27-2000, 09:26 AM
abcweb,

Its all of them. For security reasons.

Marty

Farnsworth & Thomas
09-27-2000, 10:38 AM
Well at least Alabanza has taken some action. As I understand it they left it wide open for weeks until it was posted publicly.