Gern darfst du die 302 testen. Ich werde auch ein paar VMs hochziehen, aber Produktiv warte ich mal noch etwas ab. Bisher habe ich mit der 271 noch keine Probleme gesehen und auf Reddit sind mir auch keine echten Probleme sondern nur Userfehler...
The Linux kernel has had at least 500 CVE's fixed per release (before LLMs) and your PVE 7 kernel (5.15?) is many version behind, so either one could potentially be the entry point. Whether you had a good password is irrelevant. Proxmox fixed...
PVE 7 and the Debian version it sits on went end of life over two (corrected from three) years ago. The list of vulnerabilities discovered and patched since then is going to be a mile long.
It would even be a bad idea to expose a fully patched...
I just saw an update from Proxmox on their host backup last week, which has its first patches / first implementation. It would be great if you could combine your approach into the official one.
This is rather an old thread, but here I am sharing my thought.
The presence of altname on an interface is not related to the Proxmox VE Network Interface Pinning tool [0]. It is determined by systemd-udevd hardware policy.
Based on the shared...
My sole intention in making this post is to report something that's happening to all Proxmox VE 7 systems exposed to the internet, since there's a zero-day vulnerability in the wild. I'm aware of the "danger" of exposing Proxmox to the internet...
In addition what others already said about patching, no additional security on ports and running EOL software, you should also considering monitor all internet-facing stuff in order to detect non-normal behaviour, e.g. I use on some sites mTLS...
So, you are:
Running a OS that is EOL since two years
Exposing it to the internet
Disabling the firewall
If this is not a troll, I hope the lesson was learned...
The Linux kernel has had at least 500 CVE's fixed per release (before LLMs) and your PVE 7 kernel (5.15?) is many version behind, so either one could potentially be the entry point. Whether you had a good password is irrelevant. Proxmox fixed...
PVE 7 and the Debian version it sits on went end of life over two (corrected from three) years ago. The list of vulnerabilities discovered and patched since then is going to be a mile long.
It would even be a bad idea to expose a fully patched...
Without a firewall and especially security updates they probably don't need any account or password. Maybe they entered via a VM or container? Exploits for those have been reported recently: https://forum.proxmox.com/forums/security-advisories.26/
Thank you for reminding people to regularly upgrade their software (and not run unsupported versions). I do hope you can recover from backups on a fresh (and supported) Proxmox.
There is a section in the PBS manual about ransomware...
Es gibt eigentlich nur zwei Info-Quellen lt.Google Suche (KI)
Quelle #1 : https://discussion.fedoraproject.org/t/virtio-changelog/128876
hier gibt es den Link zu
Quelle #2 : https://fedorapeople.org/groups/virt/virtio-win/CHANGELOG
steht sogar...
In addition what others already said about patching, no additional security on ports and running EOL software, you should also considering monitor all internet-facing stuff in order to detect non-normal behaviour, e.g. I use on some sites mTLS...
So, you are:
Running a OS that is EOL since two years
Exposing it to the internet
Disabling the firewall
If this is not a troll, I hope the lesson was learned...
PVE 7 and the Debian version it sits on went end of life over two (corrected from three) years ago. The list of vulnerabilities discovered and patched since then is going to be a mile long.
It would even be a bad idea to expose a fully patched...
Ironically, all the virtual machines were closed with a firewall, and the services weren't publicly accessible except through Cloudflare, with access only through Cloudflare's IPs. I'm 100% sure it's a non-auth exploit in PVE 7, perhaps a...
@calperin I updated my 2024 post to indicate the hardware involved, and I also added a section for addressing the Secure Boot certificates that expired in June of 2026.
Your disk is on sata0, which is emulated and slow. A Windows 11 upgrade...