Welcome to World of IPTV

Join us now to get access to all our features. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, and so, so much more. It's also quick and totally free, so what are you waiting for?

Forum Rules

Our Rules: Read to avoid getting banned!

Advertising

Introduce Yourself to the World with Us!

Resource Database

Find the newest resources around IPTV!

Account upgrade

Upgrade your account to unlock more benefits!

Tutorial XUIONE HACKING PROTECTION!

why exactly NOT to use OPENSSL?
is there a risk if almost the newest NGINX 1.26 with the new OPENSSL is used?
 
why exactly NOT to use OPENSSL?
is there a risk if almost the newest NGINX 1.26 with the new OPENSSL is used?
Please explain why

apt remove openssl -y

the openssl library inside the ubuntu package always has security fixes as long as you use a non-obsolete distro, so I don't see a problem
 
Channels MatchTime Unblock CDN Offshore Server Contact
100 cnx / 90€ 5Gbps / 180€ 48CPU-256GRAM 10Gbps 569€ Skype live:giefsl
500 cnx / 350€ 10Gbps / 350€ 48CPU-128GRAM 5Gbps / 349€ TG @changcdn
1000 cnx / 500€ 20Gbps / 700€ 40CPU-128GRAM 20Gbps / €980 http://coronaserver.com
Please explain why

apt remove openssl -y

the openssl library inside the ubuntu package always has security fixes as long as you use a non-obsolete distro, so I don't see a problem

There's SSL Vulnerabilities. Listening ssl ports and grabbing user info easily!
 
/sbin/iptables -I INPUT 1 -p tcp -s mainIP --dport 3306 -j ACCEPT /sbin/iptables -I INPUT 2 -p tcp -s BalanceIP1 --dport 3306 -j ACCEPT /sbin/iptables -I INPUT 3 -p tcp -s BalanceIP2 --dport 3306 -j ACCEPT /sbin/iptables -I INPUT 4 -p tcp -s BalanceIP3 --dport 3306 -j ACCEPT /sbin/iptables -I INPUT 5 -p tcp -s YourLOCALIP --dport 3306 -j ACCEPT /sbin/iptables -I INPUT 6 -p tcp --dport 3306 -j DROP

Where is says BalanceIP should I keep as it is or change to my LBs IPs?

Because I have done steps above but my dashboard become inaccessible.
 
Last edited:
Channels MatchTime Unblock CDN Offshore Server Contact
100 cnx / 90€ 5Gbps / 180€ 48CPU-256GRAM 10Gbps 569€ Skype live:giefsl
500 cnx / 350€ 10Gbps / 350€ 48CPU-128GRAM 5Gbps / 349€ TG @changcdn
1000 cnx / 500€ 20Gbps / 700€ 40CPU-128GRAM 20Gbps / €980 http://coronaserver.com
I already use the MySQL block, allowing access only to my fixed IP and to the LBs.
In addition, SSH access is only allowed to my IP on all machines.
 
Already explained that in different groups, on Telegram, Discord and some forums so i will repeat myself... This is not a hack or a xui.one new discovered breach... All people getting blackmailed have same thing in common they have at least one server from one of the known scammers/liars... They just got into fight and you customers got caught in the middle... No one using servers they buy from me got "hacked" also no one using servers from real trusted sellers got "hacked"... So unfortunately they were able to steal your DB because tbey simply have easy access to your DB from at least one of the servers they sell to you...



Its always sad to hear such things but people come to me to buy servers from me after they finally saw that its better to maybe pay a little more but at least avoid lies, and scam... (and now blackmail...)



Good luck to anyone that got into this situation cause of those pieces of sh**...
 
Last edited:
Channels MatchTime Unblock CDN Offshore Server Contact
100 cnx / 90€ 5Gbps / 180€ 48CPU-256GRAM 10Gbps 569€ Skype live:giefsl
500 cnx / 350€ 10Gbps / 350€ 48CPU-128GRAM 5Gbps / 349€ TG @changcdn
1000 cnx / 500€ 20Gbps / 700€ 40CPU-128GRAM 20Gbps / €980 http://coronaserver.com
  1. It is better to create your own vpn udp protocol for access ssh etc. via vpn but who does not want to
  2. Add crowdsec to protect your ports
  3. use Port knocking methode for ssh.
  4. Block all incoming and outgoing ports except the ports you are using.
  5. Check your logs daily.
  6. Do not touch a running system, if you have fixed it all, do not play with your system, buy another small server and do your tests there.
 
Last edited:
 
Channels MatchTime Unblock CDN Offshore Server Contact
100 cnx / 90€ 5Gbps / 180€ 48CPU-256GRAM 10Gbps 569€ Skype live:giefsl
500 cnx / 350€ 10Gbps / 350€ 48CPU-128GRAM 5Gbps / 349€ TG @changcdn
1000 cnx / 500€ 20Gbps / 700€ 40CPU-128GRAM 20Gbps / €980 http://coronaserver.com
Hey folks,


(Please share with your friends whoever uses XUIONE,22F,Mods,etc...)
*** Hidden text: cannot be quoted. ***
this is a lame address to a problem that only exists when you don't understand your system.
Why in the hell would you remove openssl when you can just update everything to protect you from recent threats.
Good and only pratice to this matter would be to compile nginx and openssl to latest version and update the nginx binaries in XUIONE, that simple!

I really can't understand why people keep cutting corners when SSL is concern, do you guys like to have the police on your backs?
 
Hey folks,


(Please share with your friends whoever uses XUIONE,22F,Mods,etc...)
*** Hidden text: cannot be quoted. ***
Hi

I have try thisone...

after that panel:
{"error":"MySQL: Cannot connect to database! Please check credentials."}

also clinet lines not work, i had must flush Mysql credentials to make it work..

somebody have really try it?

or what i have to add something?
 
Channels MatchTime Unblock CDN Offshore Server Contact
100 cnx / 90€ 5Gbps / 180€ 48CPU-256GRAM 10Gbps 569€ Skype live:giefsl
500 cnx / 350€ 10Gbps / 350€ 48CPU-128GRAM 5Gbps / 349€ TG @changcdn
1000 cnx / 500€ 20Gbps / 700€ 40CPU-128GRAM 20Gbps / €980 http://coronaserver.com
shape1
shape2
shape3
shape4
shape5
shape6
Back
Top