News

Hackers Leave Advice for Breached Security Company

Security firm Staminus servers have been taken offline today, following a supposedly successful cyber-attack on their network. The Newport Beach, California-based hosting and distributed denial of service (DDoS) protection company went down at 8 am EST on Thursday, with the company communicating details of the event via Twitter citing it as a “rare event [that] cascaded across multiple routers in a system-wide event.”

This ‘rare event’ was quickly revealed to be a far more deliberate malicious act against the company, with a data dump of Staminus’ servers being posted to the internet shortly afterwards. This leak contained the details of a large number of customer names and email addresses as well as their database table structures, routing tables and other crucial operational information. An unnamed Staminus customer verified the contents of the hack, confirming that his details were among those released in the dump. The posters of the dump declared that they had managed to gain access to all of Staminus’ routers and networked systems, resetting them to factory settings.

The dump begins with a note from the hackers responsible for the breach, titled “TIPS WHEN RUNNING A SECURITY COMPANY.” This preface detailed a number of security flaws found while breaching Staminus’ systems in a sarcastic style:

  • Use one root password for all the boxes
  • Expose PDU’s [power distribution units in server racks] to WAN with telnet auth
  • Never patch, upgrade or audit the stack
  • Disregard PDO [PHP Data Objects] as inconvenient
  • Hedge entire business on security theatre
  • Store full credit card info in plaintext
  • Write all code with wreckless [sic] abandon

While no credit card information was visible in the dumped data, doing so unencrypted goes against Payment Card Industry (PCI) security standards and inappropriate for any company handling such details, especially one claiming to be in the security business.

Also laid bare was the colourful selection of customers that Staminus served. From a number of small gaming server operators, including those for Minecraft all the way to the Ku Klux Klan, it was found that the KKK’s official website was in fact hosted by Staminus, as well as a number of affiliated sites such as the American Heritage Committee.

While Staminus claimed that service had been restored globally, many customers took to Twitter claiming that it was not the case. Since then, the only communication from the firm has been the announcement of a statement from their CEO, which is linked to their (currently offline) site. When Staminus will regain full functionality of the network is anyone’s guess, however, it will be interesting to see how the company will recover from this major event.

Alexander Neil

Disqus Comments Loading...

Recent Posts

Sapphire AMD Radeon RX 7800 XT NITRO+ 16GB Graphics Card

Experience incredible performance, visuals, and efficiency when gaming and streaming with the AMD Radeon™ RX…

2 mins ago

AMD Ryzen 5 7600X 6 Core AM5 CPU/Processor

Welcome to the new era of performance. AMD Ryzen 7000 Series ushers in the speed…

3 mins ago

MSI Intel Z790 GAMING PLUS DDR5 PCIE 5 WIFI ATX Motherboard

Take a step into the future with the Z790 Gaming Plus Wifi motherboard, designed and…

6 mins ago

Samsung 990 EVO 2TB M.2 NVMe PCIe 5.0/4.0 NVMe SSD/Solid State Drive

The 990 EVO offers enhanced sequential read/write speeds up to 5,000/4,200 MB/s, and random read/write…

9 mins ago

CORSAIR A115 High-Performance Dual-Tower Intel/AMD CPU Cooler

High-Performance Air Cooler with six 6mm heat pipes and a copper cold plate for high-efficiency…

11 mins ago

ASUS TUF 4-in-1 RGB Gaming Peripherals Keyboard Mouse Headset Mouse Mat Bundle

Experience an outstanding performance and exceptional toughness with the ASUS TUF K1 RGB Gaming Keyboard.…

25 mins ago