HackerFeeds

CyberSecurity News

Malicious Virtualizor Update Served via BGP Hijacking

SecurityWeek
· September 2, 2026

AI summary

A threat actor used BGP hijacking to divert traffic to fake software updates, utilizing a valid TLS certificate for Softaculous' domains. This allowed them to serve malicious Virtualizor updates. The actor's use of a technically valid certificate facilitated the diversion of traffic. The hijacking enabled the distribution of fake updates, potentially compromising systems that received them. The threat actor's actions relied on exploiting the routing protocol to intercept and alter traffic.

Read the full article at SecurityWeekwww.securityweek.com/malicious-virtualizor-update-served-via-bgp-hijacking/

This is an AI-generated brief aggregated by HackerFeeds for convenience and grounded in the source’s own summary; the related CVE, threat-group and country data is from HackerFeeds’ own indexes. The original article is the authoritative source — all rights belong to SecurityWeek.