
Hetzner
CompanyWikipedia
46
MENTIONS
22
EPISODES
18
PODCASTS
Search complete. 46 mentions across 22 episodes found for "Hetzner".
Sep 11, 2026
#105 - EU LLMs with Pawel Piwosz, Filipe Berti and Mark Shine
F
45:18Filipe BertiGUEST
You know, like that's a case of ecosystem.
F
45:22Filipe BertiGUEST
You know, you have access to the main European sovereign clouds like Hetzner, OVH, us, like UpCloud, and you can do cool stuff there.
F
45:31Filipe BertiGUEST
And I think Europe is being, you know, on the vanguard of that.
F
45:37Filipe BertiGUEST
We should be proud and take it further.
2.5 Admins 316: BGP Clipboard Hijack
A
1:24Allan JudeHOST
But the big one is a software company called Softaculous, which makes a virtualization management software called Virtualizor that is used by a bunch of places to manage their virtual environments.
A
1:37Allan JudeHOST
basically had the IP range they host at Hetzner hijacked by a different provider, and then malicious software updates for their software deployed to their customers.
A
1:49Allan JudeHOST
So any customer who tried to update their virtualizer software would basically get routed to the right IP address and the right domain name, but pointing to the wrong server because of the BGP hijack, and then download malware in place of the update for the software they were trying to install.
A
2:07Allan JudeHOST
Of course, this is only possible because Softaculous doesn't sign their updates in any way and basically relied only on TLS to verify that the other side was actually their server.
A
2:54Allan JudeHOST
Although in this case, it's not the standard one.
A
2:57Allan JudeHOST
So Hessner was actually deploying the routing PKI stuff to say, here's a signed list of places that are actually allowed to publish routes for this block of IP addresses.
A
3:09Allan JudeHOST
The issue turned out to be that Hetzner's rule did allow more specific routes within that block.
A
3:16Allan JudeHOST
So they have a slash 16 that they announce and they have it RPKI'd, but the attackers were allowed to broadcast a slash 24 that was more specific and hijack only that one part of the subnet.
2.5 Admins 316: BGP Clipboard Hijack
A
1:21AlanHOST
Yeah, this one involves a whole cast of characters, but the big one is a software company called Softaculous, which makes a virtualization management software called Virtualizor that is used by a bunch of places to manage their virtual environments.
A
1:37AlanHOST
Basically had the IP range they host at Hetzner hijacked by a different provider, and then malicious software updates for their software deployed to their customers.
A
1:49AlanHOST
So any customer who tried to update their Virtualizor software would basically get routed to the right IP address and the right domain name but pointing to the wrong server because of the BGP hijack, and then download malware in place of the update for the software they were trying to install.
A
2:07AlanHOST
Of course, this is only possible because Softaculous doesn't sign their updates in any way and basically relied only on TLS to verify that the other side was actually their server.
A
2:48AlanHOST
Of course, they were only able to hijack the IP address because of BGP security issues.
A
2:54AlanHOST
Although in this case, it's not the standard one.
A
2:57AlanHOST
So Hetzner was actually deploying the routing PKI stuff to say, "Here's a signed list of places that are actually allowed to publish routes for this block of IP addresses." The issue turned out to be that Hetzner's rule did allow more specific routes within that block.
A
3:16AlanHOST
So they have a slash 16 that they announce, and they have it RPKI'd, but the attackers were allowed to broadcast a slash 24 that was more specific and hijack only that one part of the subnet.
2025 FOSS4G NA | ReMaking Cirrus - Jarrett Keifer
J
25:16Jarrett KeiferGUEST
We're still relying on step functions.
J
25:20Jarrett KeiferGUEST
We have had conversations of, well, what do we do if we want to switch to Azure? Do we just implement everything in Azure managed services? If we do that and then someone says we want to move to some, I don't know, bare metal servers in Hetzner or something, it's like, well, then we don't have a solution.
J
25:39Jarrett KeiferGUEST
So do we target Kubernetes again? What do we do? So I don't think we have a great answer to that at the moment either.
J
25:48Jarrett KeiferGUEST
There's a lot of benefit from using the managed services and just having something that's very targeted because it keeps the code base very simple.
Shadow AI Epidemic: Uncovering Agents on the Endpoint, British Library Breach, & News - Amit Assaraf - ESW #475
E
89:10Eamon ElsuaHOST
There are things to take care of.
E
89:12Eamon ElsuaHOST
And this attacked a major provider, Hetzner.
E
89:16Eamon ElsuaHOST
So, like, there's a lot of companies on Hetzner.
E
89:20Eamon ElsuaHOST
So, yeah, I find it very interesting.
A
89:23Adrian SanabriaHOST
Yeah, it's like a European AWS, not quite.
OpenAI says its next model finds security flaws nobody has found yet — 2026-09-02
S
0:52speaker_0NARRATOR
In a sophisticated supply chain attack, hackers hijacked a portion of internet space to install malware on networks.
S
0:59speaker_0NARRATOR
They exploited weaknesses in the routing security of Hetzner Online and the TLS certificate process, allowing them to control IP addresses assigned to Softicalis.
S
1:09speaker_0NARRATOR
This UAE-based company provides cloud management software, and the hijacked IPs were used to push malware disguised as legitimate updates.
S
1:18speaker_0NARRATOR
The attack highlights vulnerabilities in internet routing protocols, emphasizing the need for stronger security measures.
Peering into the Tube
A
29:10Alan PopeHOST
Yeah, I know, right? So what I did was deploy a Docker instance from the upstream images.
A
29:22Alan PopeHOST
on my favorite Hetzner box over in Germany, but I didn't really want to host all of the media on that box.
A
29:32Alan PopeHOST
And so what I did was I used our favorite S3 block storage platform where we store all the audio files.
A
29:41Alan PopeHOST
I thought, well, let's be consistent.
Using Agents to Curate the Content You See Online - Dan Gish
D
10:34Dan GishGUEST
If you have a Mac at home that's always online, that could be a good way to go.
D
10:37Dan GishGUEST
I personally install it on a cheap VM, on a Hetzner VM in the cloud, and that allows me to just install a progressive web app on my phone.
D
10:50Dan GishGUEST
So it seems just like a normal app on my phone.
D
10:54Dan GishGUEST
It's running off of my own VM in the cloud.
D
11:07Dan GishGUEST
Yeah.
D
11:09Dan GishGUEST
Again, I have instructions for your coding agent on the GitHub.
D
11:16Dan GishGUEST
that'll set up a Hetzner VM in the cloud, do all this stuff for you.
D
11:21Dan GishGUEST
So it's literally just like a one-click kind of thing.
Seven-ish Questions on Data Center Water Use
I
9:28Igor KravchukHOST
And these will usually be co-locating many different independent workloads.
I
9:36Igor KravchukHOST
So if you think of a large provider in Europe, it's Hetzner.
I
9:43Igor KravchukHOST
They have a data center in Frankfurt.
I
9:45Igor KravchukHOST
That will power most of central Europe.
Build vs Pull: Docker Deploy Strategies for Solo Devs
H
16:41Herman PoppleberryHOST
And ARM VPS instances are getting more common.
H
16:44Herman PoppleberryHOST
Hetzner's got ARM boxes.
H
16:46Herman PoppleberryHOST
Oracle Cloud's free tier is ARM.
H
16:49Herman PoppleberryHOST
The Raspberry Pi as a home server is a whole ecosystem.
12 more episodes mention Hetzner.
Create an account to see the whole feed, search across every transcript, and follow the entities you care about.