Really gotta feel for the webhost, vaser…
Really gotta feel for the webhost, VAServ, and the virtualization software provider company, LxLabs.
0-day exploit of the virtualization software from LxLabs caused a big UK-based host, vaserv, to lose 100,000 sites. A visit to their homepage now can see how bad they are being hit and how hard their engineers are working trying to restore the servers. Can’t imagine how many days the engineers would have to go without sleep to restore all those servers. Are there any compatible virtualization software that they can use to move their clients over to?
This is going to be tough. Life as sys admins can be really bad sometimes, especially when it’s not really your fault.
And now the boss of LxLabs is dead, and LxLabs, according to The Register, is also uncontactable, how much damage can they claim from LxLabs?
This is going to affect a lot of people who are being hosted by VAServ, ecommerce sites, web hosting resellers – having to answer to their clients, web developers, companies that host critical services like email servers, etc. And to make matters worse, VAServ is unable to provide any ETA on the restoring work.
I have gone through the list of vulnerabilities as published by milw0rm. The majority of the vulnerabilities are pretty much very fundamental. It’s shocking to think that a software that is used to power so many servers worldwide have such fundamental flaws.

kahwee 2:22 am on June 10, 2009 Permalink
Wow this really scares me.
kahwee 12:47 pm on June 11, 2009 Permalink
I see more updates at http://www.vaserv.com/ It appears they manage to restore some servers. However servers labeled “21:03 vz54uk dead/100% loss” sends me the chills.
It seems that they may pull it through. Good for their customers.
Now I feel like backing up my back up.
uzyn 1:35 pm on June 11, 2009 Permalink
Amazing. Their work is really commendable for not giving up after working tirelessly for so long.
uzyn 3:23 am on June 14, 2009 Permalink
Really have got to give it to them.
VAServ is finally back in business after the long battle.
I wonder how much of their customers’ data are restored.
But am glad that they are back.
kahwee 9:24 am on June 14, 2009 Permalink
Amazing. And you just never knew it occurred.