Established 2026Sunday, 6 September 2026
presents

The CloudySec Digest

The wires, edited.
← Front PageThreat Intel Desk
Threat Intel

Hackers push malicious Virtualizor update in BGP hijacking attack

Attackers hijacked BGP routes to Virtualizor's update infrastructure to push trojanised updates—a sobering example of how network-layer manipulation can undermine software supply chains, even for signed packages.

Summary written by editorial AI · Source link below

Filed by BleepingComputer1 min readRead at source ↗

Hackers delivered malicious updates to the Virtualizor VPS management software after hijacking BGP routing for its update infrastructure and redirecting update requests to malicious servers. [...]

Editorial Analysis

Why it matters

BGP hijacking of update channels represents a supply-chain threat that bypasses many application-level controls, making RPKI adoption and update-integrity verification essential.

What to do

Verify RPKI deployment with your hosting and ISP providers, and enforce cryptographic verification for all automated software updates.

Board brief

Attackers redirected a software vendor's update traffic via BGP hijacking to distribute malware—review your supply-chain integrity controls.

Forward-looking interpretation drafted by editorial AI under human review — not a reproduction of the source. See methodology.

Continue at the source
Read the full report at BleepingComputer

External link — opens at BleepingComputer in a new tab.

§
Continue with

More from the Threat Intel Desk