PulseAugur
EN
LIVE 12:50:51

BGP hijack diverted Softaculous traffic, delivered malware

A 33-hour Border Gateway Protocol (BGP) hijacking incident diverted traffic intended for Softaculous, a web hosting software vendor, to an attacker-controlled server. This allowed the attacker to deliver malware to a small number of Virtualizor installations and potentially intercept user credentials and payment information. The hijacking was facilitated by announcing a more specific IP address range, which took precedence in BGP routing, and even allowed the attacker to obtain a valid TLS certificate from Let's Encrypt. AI

IMPACT This incident highlights vulnerabilities in BGP routing and software update mechanisms, potentially impacting the security of web hosting infrastructure.

RANK_REASON Security incident affecting a software vendor's product distribution.

Read on The Register — AI →

AI-generated summary · Google Gemini · from 1 sources. How we write summaries →

BGP hijack diverted Softaculous traffic, delivered malware

How we ranked this

Signal score
22 / 100
Composite score across the factors below. Higher = stronger signal that this story matters right now.
Newsworthiness bucket
Tool
Security incident affecting a software vendor's product distribution.
Source corroboration
Single-source cluster
Only one publisher covered this so far. Single-source stories can still rank when the publisher is high-authority, but they lack cross-source corroboration.
Topics
product, other
Editorial topic classification. Feeds into how the story surfaces on /topic/<slug> hub pages and into the per-entity coverage mix.
AI-industry relevance
Standard
On-topic for AI-industry coverage; kept in the public index.
Story freshness
Breaking (< 6h)
Fresh story with cross-source coverage still developing. Ranking may shift as more sources report.

Full methodology in our editorial standards.

COVERAGE [1]

  1. The Register — AI TIER_1 English(EN) ·

    33-hour BGP hijack of Softaculous traffic prompts security scramble

    Hosting software vendor tells customers to reset credentials and hunt for malicious packages