UnamSanctam / UnamWebPanel

MIT License
175 stars 58 forks source link

Do they really come back? #324

Closed DerXanRam closed 8 months ago

DerXanRam commented 8 months ago

Hello unam. today when i was reading about the infamous XXS attack on the web panned, i see one weird miner adding him self to my panel and my miners started being offline. i immediately realized the situation and put my website down. then i upgraded to the newer version u provided.

I took the action immediately, but he managed to take ~90Kh/s in less than 1 minutes. My question is, i upgraded the panel and every thing is backing to the normal condition but not the miners he took. I see u mention in this issue, the miners will back on the next restart. however i use your very old miner(V 3.1.0) and i'm not sure version 3.1.0 have the feature or ability to do this. because the attacker changed the API URL and Remote URL to his own address. Is there any chance they will back home?

UnamSanctam commented 8 months ago

Yes all versions of the miner go back to their builder configuration when they start, any configuration changes done while it's running (through either the "Remote Configuration" or web panel) are only in memory and never saved anywhere.

DerXanRam commented 8 months ago

Yes all versions of the miner go back to their builder configuration when they start, any configuration changes done while it's running (through either the "Remote Configuration" or web panel) are only in memory and never saved anywhere.

OK thanks very much. And for information to another miners, this time when he add his miner, he done his best to cover the action. like he wasn't sent weird CPU name. instead he fill very accurate info and send some H/s. as a result every thing seems normal until i see my number of miners and recognize a new one :smiley: . take a look the screenshot

photo_5841305181151674681_y

if u need to investigate more, i will share the full panel files.

Thanks. have a nice time. :+1: