zlacker

[return to "I got hacked: My Hetzner server started mining Monero"]
1. j45+z6[view] [source] 2025-12-17 21:47:02
>>jakels+(OP)
Never expose your server IP directly to the internet, vps or baremetal.
◧◩
2. procar+97[view] [source] 2025-12-17 21:49:48
>>j45+z6
As in "always run a network firewall" or "keep the IP secret"? Because I've had people suggest both and one is silly.
◧◩◪
3. j45+aF[view] [source] 2025-12-18 02:01:40
>>procar+97
A network firewall is mandatory.

Keeping the IP secret seems like a misnomer.

Its often possible to lock down the public IP entirely to not accept connections except what's initiated from the inside (like the cloudflare tunnel or otherwise reaching out).

Something like a Cloudflare+tunnel on one side, tailscale or something to get into it on the other.

Folks other than me have written decent tutorials that have been helpful.

[go to top]