BGP Hijack Targets Virtualizor Update Infrastructure
A sophisticated supply chain attack targeted the Virtualizor and Softaculous update infrastructure through BGP hijacking. Attackers utilized unauthorized BGP route announcements and rogue Autonomous System Numbers (ASNs) to intercept traffic destined for legitimate update servers. By redirecting requests to attacker-controlled endpoints, the threat actors served fraudulent update payloads to unsuspecting clients. This interception facilitates high-impact risks, including Remote Code Execution (RCE) on management hosts and potential lateral movement within high-density VPS and dedicated server environments. The campaign demonstrates the critical vulnerability of network-level trust in software distribution lifecycles, specifically targeting hosting provider management workflows.