Isp Hacked, Urgent Help Needed
Posted: Fri Apr 29, 2005 9:01 am
HELPPP....
My ISP has been hacked, they are down!! Servers wiped out!
Last week they went down and thought it was hardware problems, they got it back up for a few days maybe a week, now they got trashed again. Everythng gone, hackers left the console up enough to see it was hacked this time and that's all they have. T1's are running but they can't even get to them theirselfs.
Talking about shutting it down permanant now if we don't find a fix by Monday.
What can be done to prevent this from happening again? They can set it back up, but as they say why bother if it will be wiped out again in a few days. I suggested for the time being we set up a system OFF the net and lan as a duplicate system we can use for back up and copy everything for now so if it is wiped out we only have to re-install a backup till we find a fix.
But every-one using the ISP e-mail would constantly lose e-mails that way although the system would be up 90% for surfing still.
I think they were using RedHat Linux on the servers. I still never messed with linux but have Mandrake, about a year old, the free download.
This is a small ISP, maybe 300-500 users, they cannot afford $5,000 software fixes or such.
Why they don't have a backup I don't know!! They will have to set up the system fresh manually, AGAIN.
What would be involved in setting up the system on one of my extra computers and backing up to an image to install onto the severs so we always have a backup? They said something about it being Linux and imaging not working??? I am sure we can, but I am not familar with Linux.
And most iportant of course is how to keep it up. This time they think the hackers were from korea.
Thanks all help needed and apreciated.
That is where I have my office and a Lan connection to the net servers myself. Luckily I have not been using it so my system was off and could not be hacked, I think one of their personal Pcs was running on the lan and got wiped also. I have other options for dialup available but realy want this ISP to stay running!!
My ISP has been hacked, they are down!! Servers wiped out!
Last week they went down and thought it was hardware problems, they got it back up for a few days maybe a week, now they got trashed again. Everythng gone, hackers left the console up enough to see it was hacked this time and that's all they have. T1's are running but they can't even get to them theirselfs.
Talking about shutting it down permanant now if we don't find a fix by Monday.
What can be done to prevent this from happening again? They can set it back up, but as they say why bother if it will be wiped out again in a few days. I suggested for the time being we set up a system OFF the net and lan as a duplicate system we can use for back up and copy everything for now so if it is wiped out we only have to re-install a backup till we find a fix.
But every-one using the ISP e-mail would constantly lose e-mails that way although the system would be up 90% for surfing still.
I think they were using RedHat Linux on the servers. I still never messed with linux but have Mandrake, about a year old, the free download.
This is a small ISP, maybe 300-500 users, they cannot afford $5,000 software fixes or such.
Why they don't have a backup I don't know!! They will have to set up the system fresh manually, AGAIN.
What would be involved in setting up the system on one of my extra computers and backing up to an image to install onto the severs so we always have a backup? They said something about it being Linux and imaging not working??? I am sure we can, but I am not familar with Linux.
And most iportant of course is how to keep it up. This time they think the hackers were from korea.
Thanks all help needed and apreciated.
That is where I have my office and a Lan connection to the net servers myself. Luckily I have not been using it so my system was off and could not be hacked, I think one of their personal Pcs was running on the lan and got wiped also. I have other options for dialup available but realy want this ISP to stay running!!