26 March 2020

Popular dark web hosting provider shuts down after second hack


Popular dark web hosting provider shuts down after second hack

Daniel’s Hosting (DH), the largest free web hosting provider for dark web services, went out of business after being hacked for the second time in 16 months, ZDNet reports.

Nearly 7,600 dark web sites have been taken offline following the attack, during which an entire database was deleted from the web host portal by an attacker.

According to Daniel Winzen, the founder of DH service, the incident transpired earlier this month, March 10, at about 03:30 am UTC. An attacker has deleted all hosting-related databases on the hosting website following the compromise. Later, the attacker deleted Daniel Hosting's database account and created a new one for future use.

Winzen said he discovered the attack next morning, but by that time most of the data had been already lost. Winzen is still unaware of how the hack happened or which hacker group is behind it. However, since he treats the hosting service as a part-time hobby, he decided not to move forward with further investigation.

Winzen also said that the hack only affected the DH backend database account, but not the accounts of users who had been hosting sites on the DH hosting platform. However, he recommended users to treat the passwords as “leaked” and change them if they used the same password for other accounts.

For now, the DH’s operator has no intention of continuing with the hosting project. Instead, he has plans to relaunch the service at a later date with more features and improvements.

This is not the first time when Daniel’s Hosting had fallen victim to a breach. In November 2018, a hacker similarly breached the site's backend database server and deleted all sites. More than 6,500 websites went offline at the time.

Back to the list

Latest Posts

North Korean hackers target South Korean defense contractors

North Korean hackers target South Korean defense contractors

Lazarus, Kimsuky, and Andariel are believed to be behind the cyber intrusions.
23 April 2024
US imposes visa restrictions on individuals linked to commercial spyware

US imposes visa restrictions on individuals linked to commercial spyware

The announcement follows the implementation of a new policy by the US government over two months ago.
23 April 2024
Threat actor uses Signal spear-phishing to infect Ukrainian military personnel with malware

Threat actor uses Signal spear-phishing to infect Ukrainian military personnel with malware

The attack exploits a vulnerability in WinRAR software.
23 April 2024