OpenVZ Forum


Home » General » Support » *CLOSED* Security breach :: prctl vulnerability
Re: Security breach :: VPS owner break into main node!!!! [message #7453 is a reply to message #7385] Fri, 13 October 2006 16:01 Go to previous messageGo to previous message
whatever is currently offline  whatever
Messages: 142
Registered: September 2006
Senior Member
How I detected?
In hardware node we use alert script whenever anyone login to root we get alert. And direct root login to Hardware node is disabled. To get root access one has to login as user allowed list in hardware node and then su password to get root.
There are only 2 users in hardware.
The VPS user got the access to root. And the details of VPSuser, ip, time etc were recorded in alert email.
This happened 2 times with different VPS users.
I can send the VPS root access and alert details to the developer of openvz to have a look at it.
Maybe they can understand better then me.

Thanks.
 
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Previous Topic: dual nic environment
Next Topic: Problem with 0.18.1 and kmemsize
Goto Forum:
  


Current Time: Mon Sep 08 23:33:13 GMT 2025

Total time taken to generate the page: 0.15097 seconds