• If you are still using CentOS 7.9, it's time to convert to Alma 8 with the free centos2alma tool by Plesk or Plesk Migrator. Please let us know your experiences or concerns in this thread:
    CentOS2Alma discussion
  • Please beaware of a breaking change in the REST API on the next Plesk release (18.0.62).
    Starting from Plesk Obsidian 18.0.62, requests to REST API containing the Content-Type header with a media-type directive other than “application/json” will result in the HTTP “415 Unsupported Media Type” client error response code. Read more here

Catalinx hack

yabado

Regular Pleskian
I recently noticed some strange email bounces coming back to my Plesk "test" server. It turns out that the server was hacked. After som investigation I found this site that explains what was compromised...

http://catalinx.org

Here is what it says...

--snip--
NOTICE, THIS DOMAIN WAS USED BY HACKERS FOR ROOTKIT EMAILS,
CHECK /etc/cron.daily/dnsquery,
/etc/cron.daily/distwatch,
/etc/init.d/killd,
/usr/lib/popauth,
/usr/share/misc/blah/ and
your local smtp server for emails to [email protected] or [email protected]


You can check your Linux server for rootkits with any or all of these programs: chkrootkit, rkhunter, unhide.
This Website is NOT RELATED with the hackers.
--snip--

What are some best practices for preventing such an attack in the future?
 
Back
Top