E-Ink News Daily

Back to list

Security Incident – BGP Hijacking

Virtualizor disclosed that between August 28-30, 2026, their Softaculous IP range (162.55.80.0/24) was targeted in a BGP hijack by AS62390 (NexonHost), diverting traffic through an attacker's server. The attacker obtained a valid TLS certificate for Virtualizor domains and delivered a malicious update package to a small number of installations checking for updates during the hijack window. Routing has been fully restored, but Virtualizor urges all operators to check their systems.

Background

BGP hijacking is a route manipulation attack where an unauthorized network announces IP prefixes it does not own, redirecting internet traffic. This incident highlights ongoing vulnerabilities in the BGP routing trust model used across the internet.

Source
Lobsters
Published
Sep 3, 2026 at 10:07 AM
Score
7.0 / 10