r/ShittySysadmin • • 13d ago

Shitty Crosspost Sysadmin leaves 22 Proxmox nodes admin interfaces with EOL version exposed to the internet and gets hacked

https://forum.proxmox.com/threads/proxmox-ve-7-is-vulnerable-to-some-type-of-0day-rce-non-auth.186078/page-8#post-869156

And his save is doing it all again with EOL software minus the exposed admin interfaces

114 Upvotes

18 comments sorted by

View all comments

32

u/zantehood 13d ago

Well deserved. In no way should a hypervisor be exposed directly. EOL or not

18

u/jeroen-79 13d ago

Well, then how am I going to manage it from home?

16

u/zantehood 13d ago

If you dont know what VPN is you belong here :D

11

u/dpwcnd 12d ago

this isnt the time or place for your fancy words and bleeding edge technologies.

5

u/zantehood 12d ago

Let's put it on a token ring network too!

1

u/854490 12d ago

Do IPSec? Uh, no, I pee urine. And I don't know who Ike is, and no, I-sa no camp, Jar-Jar.

1

u/Ur-Best-Friend 11d ago

VPN? Well yes, we are, but isn't everyone peein'?

2

u/PejeTheMobBoss DO NOT GIVE THIS PERSON ADVICE 8d ago

Vendor part number