Supply Chain Attack
Softaculous BGP Hijack Served Malicious Virtualizor Update, Planting Persistent Root Access
Softaculous has reconstructed the 33-hour BGP hijack that rerouted its traffic in late August. Attackers used a valid TLS certificate for Softaculous domains to serve a malicious Virtualizor update, establishing persistent root access on the hosts that installed it during the window.