Reported the issue to Solus. Their "audits" aren't very encouraging though.
I hope you're right. Selling VPSes is getting to be enough of a headache without vulnerabilities in the underlying bits. I do come off a bit pessimistic there, really I'm excited to see some of the (hopefully better) software that will come out of these fiascoes.@D. Strout KVM vulnerabilities are less likely to occur, just because of the way it functions.
...To put it mildly. Really whether real change comes at this point depends on if SVM realizes that people are willing to ditch their product due to these issues and the utter lack of transparency. (They are, aren't they?) If there's any chance that sales will continue despite this, nothing will happen.Reported the issue to Solus. Their "audits" aren't very encouraging though.
Unfortunately not. Capisso VMPanel, for example, is making the same exact security mistakes. And any software that is good, like Stallion or Cloudware is not likely to be handed out like candy.I hope you're right. Selling VPSes is getting to be enough of a headache without vulnerabilities in the underlying bits. I do come off a bit pessimistic there, really I'm excited to see some of the (hopefully better) software that will come out of these fiascoes.
No change will come because ultimately, the children running SolusVM (and let me assure you, 90% of SolusVM customers are children) will continue to run it, because the software enables them....To put it mildly. Really whether real change comes at this point depends on if SVM realizes that people are willing to ditch their product due to these issues and the utter lack of transparency. (They are, aren't they?) If there's any chance that sales will continue despite this, nothing will happen.
I hope you're wrong. Take the LET > VPSB move. I never thought there would be any major move away from LET due to inertia. But there was. Hopefully someone will come through with a really good product and people will wake up, take notice, and switch.No change will come because ultimately, the children running SolusVM (and let me assure you, 90% of SolusVM customers are children) will continue to run it, because the software enables them.
Agreed.Hopefully someone will come through with a really good product and people will wake up, take notice, and switch.
The problem with your theory is that switching from LET to VPSB is easy: you just go to a new site.I hope you're wrong. Take the LET > VPSB move. I never thought there would be any major move away from LET due to inertia. But there was. Hopefully someone will come through with a really good product and people will wake up, take notice, and switch.
It was timing that made it possible, something that had been created before the hack of LET. Not after or because of it.I hope you're wrong. Take the LET > VPSB move. I never thought there would be any major move away from LET due to inertia. But there was. Hopefully someone will come through with a really good product and people will wake up, take notice, and switch.
The vulnerability is in the fact that the "Solusvmpro" module does not filter form parameters and uses libcurl to POST to the SolusVM master.So does this mean module's garden solusvm/whmcs module is safer than the original solusvm produced whmcs addon? XD
Sheesh...
Fairly sure he already said he'd turn them down, even if offered 6 figures.SolusVM should hire that localhost.re guy to check their codes before a release
chicago vps PLEASE TELL ME YOU'VE SEEN THIS. PLEASE RESTORE MY FAITH.
Chris knows, I messaged him as I figured he'd be first to get hit by it considering all he has posted about is restricting access to WHMCS only.Restore your faith ehh? A little late for that.
Chris knows, I messaged him as I figured he'd be first to get hit by it
The destiny of HyperVM was pretty sad - despite the personal problems that Ligesh had, he had still managed to create a good product on his own. Here is a little bit about us:
Phillip Bandelow (Lead Developer / Co Founder):
Phill is pretty much the brains behind the SolusVM operation and the 'frontman' for the SolusLabs project. He is an expert when it comes to Linux OS's and has many years experience in support roles, IRC servers and network topology.
David Austen (Developer / Co Founder):
David Austen has been in IT since the mid 80's, working in secure communications for Plessey (British Army, Germany), BP, NCR and most of the banking sector. In 2001 David started 'Starteck Online' - a small hosting company that still exists to this day. In October 2008 David and Phill started ValueVPS Ltd, a VPS provider situated in the budget end of the hosting market.
Kelly Hunter:
Kelly is the backbone of the company, keeping the financials 'right' and the paperwork sorted. She also manages day to day operations in the office. Kelly has long term experience in local Government administration.
Business Info...
Currently we have no need to employ anyone else as SolusVM is a very manageable product. SolusLabs works from the office of ValueVPS based in the North East of England. There are plans to relocate to a more centralised office near our datacentre in the next few years, moving a little closer to Phill so he doesn't need to telework so often.
Because of the history behind the way the three businesses were started, we do plan to employ people in the future but will be looking toward training people from deprived areas/backgrounds that would probably never get a chance to work in the IT sector - our way of giving something back to society. This is most likely to happen over the next 12-18 months.
We are an eco-friendly, green approved business as we operate in an envoironmentally friendly manner. We use recycled paper, work from home as much as possible and use low power hardware when we can.
If anyone has any questions, please feel free to ask. We will still be here tomorrrow, and have no plans of falling off the face of the earth.
Solus can afford a 6 figure salary?Fairly sure he already said he'd turn them down, even if offered 6 figures.
Best of luck to everyone,
Francisco
Probably.Solus can afford a 6 figure salary?