|
|
|
|
|
Server Outage |
|
Submitted by Dylan Reeve on 10 May 2007 - 1:08am |
News |
Approximately 1am on Saturday, May 5th, the server which hosts this site, the NZLUG mailing lists, and other associated services, was attacked via a PHP vulnerability in a third-party PHP application, and the attacker gained a user-level shell on the machine.
This attack was used to launch a flood attack against an overseas IP address. Unfortunately this traffic had a very heavy impact on the network of our hosting provider.
As a result they had no choice but to disconnect the server from the network. Unfortunately it was quite some time before we were able to gain access to the server to investigate.
Our hosting provider has said they are unwilling to continue hosting the server.
A new US-based server has been arranged and has been configured. The services have now been mostly reinstated, and actions have been taken to prevent a repeat of anything like this incident.
Thanks and sorry about the outage. |
|