With this special newsletter we would like to inform you about current
developments in relation to your services with us in relation with the war
in Ukraine and recommendations for action.
----
Contents:
1.) Information on sanctions Belarus & Russia
2.) Information on protecting your services at EUserv
3.) Recommendations for action for using your services
4.) Energy prices and recommended change to fully virtualized servers
----
1.) Information on sanctions Belarus & Russia
Our company operates as a global service provider and as such is monitoring
the regulatory, organizational, security and commercial consequences of the
war in Ukraine very, very carefully. Since February 24, 2022, a 24x7 task
force has been set up to deal exclusively with the topic.
The rules, restrictions and sanctions put into effect by the responsible
official institutions as part of the war in Ukraine are and have already
been implemented by us. We have already reacted to the changed situation.
Affected customers were informed about the changes to their contracts or
their account over the past weekend. In this context, we are discontinuing
all offers in the affected countries until further notice. All other
countries are not affected.
2.) Information on protecting your services at EUserv
As part of the changed security situation, we expect a higher volume of
cyber attacks in the form of phishing, hacking, DDOS attacks, etc. on the
services we provide in the coming weeks and months.
As an immediate measure, we have therefore slightly changed access to the
control panel as the central administration interface for your services:
Previously it was possible to optionally activate two-factor authentication
in the settings. From now on, two-factor authentication is activated by
default and, if desired, must be actively deactivated in the customer
center (not recommended). Access to the control panel is thus better
secured.
Furthermore, there is already the first spam with requests for BitCoin
donations for the Ukraine. As a rule, reputable aid organizations do not
advertise unsolicited by email. We recommend deleting such emails and, if
necessary, making a donation directly on the website of the respective aid
organization.
3.) Recommendations for action for using your services
In general, it can be assumed that the cyber threat will increase
significantly during and after the war. We therefore recommend that you
check the security immediately and urgently when using your services!
Simple passwords are very dangerous, please change them _immediately_!
Here is a non-exhaustive list of tasks to check _today_:
Control Panel:
* Is your customer center password secure?
* Do you use your customer center password _only_ to access the customer
center?
Webhosting:
* Is your password to your FTP account secure?
* Do you use SSL or a secure connection to the web space?
* Have you enabled _everywhere_ SSL? (https:// address)
* Do you have web applications with logins in operation (e.g. Wordpress)
and have you installed all current updates including updates for all
plugins?
* Have you made a current backup of your data?
* Have you switched to a current PHP version in the customer center?
E-Mail:
* Do you have secure email passwords?
* Do you have a secure connection to the email server (IMAP /SSL/TLS)?
* Do you use "encrypted password" for authentication in your mailbox
settings of your email program?
* When accessing the webmailer, are you using a browser with all the latest
updates?
* Have you activated spam and virus protection for _each_ email address in
the customer center?
Server + vServer/VPS:
* Have you changed your password from the customer center manually on the
console of your server?
* Do you have a current backup of your server _off_ the data center?
* Do you have a firewall active for IPv4 _and_ IPv6 and blocking all
unnecessary TCP _and_ UDP ports?
* Have you enabled key authentication for SSH login?
* Have you imported all the latest updates for the OS you are using?
We would like to ask you _today_ to carry out the recommendations for
_every_ service used by EUserv.
Furthermore, we would like to ask you to report any abnormal activity
related to the use of our services directly to our support via the customer
center.
4.) Energy prices and recommended change to fully virtualized servers
We expect a significant increase in energy and electricity prices during
and after the war. This will primarily affect customers with smaller
dedicated servers.
If you operate a smaller dedicated server at EUserv, please immediately
check the possibility of using a fully virtualized server. If this is
possible for your application, please contact the sales department for an
early free move and setup of a free parallel operation on an equivalent
fully virtualized server based on KVM/quemu.
kind regards,
EUserv customer service |