Skip to main content

Site downtime

Comments

10 comments

  • Alex

    Hi,

    There's been a massive phishing campaign that has affected our Brizy Cloud platform last night. This happened because unusual activity on certain websites created on Brizy Cloud platform by malicious users has been reported directly to the registrar of our domain.

    Our automated systems were already working to block and prevent those accounts, but the registrar locked our domain for review, without notice or warning. So we didn't get a notification either and it was a real surprise.

    We will be actively trying to improve and make sure this will not be an issue in the future, but with increased popularity comes also increased exposure to malicious threats. Just to reiterate, this was NOT a security issue or data breach and did not affect your websites other than the unfortunate downtime, but a problem with the content created on our platform by malicious users.

    We are very sorry for the inconvenience and this is not a formality, we are really sorry. :/

     
    0
  • Tom O'Connor

    Hi Alex,

    Thanks for your response.

    May I know what solutions are being put in place between Brizy and the Registrar?

    ...so our site isn't taken offline again for such a long period of time with the potential for serious real world financial impact.

    Looking forward to your update.

    Cheers,

    0
  • Alex

    I'm afraid I don't have such details but I will talk to the managers and we will probably come up with official details in this regard.

    0
  • Tom O'Connor

    Hi Alex,

    Please do we can't have anything like this happen again. In 20 years online, we've never had such a long outage of a production site in that time. It's really important this never happens again.

    Thanks,

    Tom

    0
  • Tom O'Connor

    Hi Alex,

    Can you please update on the latest response from your managers.

    Thank you,

    Tom

    0
  • Alex

    Hi Tom,

    We have agreed with the registrar to give us a warning and to have 24 hours to react every time they receive complaints from users about spam/phishing in the brizy.site domains. Thus, the domain will not be blocked automatically, but we will have reaction time.

    0
  • Tom O'Connor

    Hi Alex,

    Good to hear that. To give us some idea of the likelyhood of this kind of issue happening again, how frequently are the registar getting spam/phising complaints about Brizy?

    Regarding 24 hours to react, how long does it take for your team to effect whatever corrections need to be made against a user or users who are deemed to be the source of the spam/phishing compalint?

    Thanks,

    Tom

    0
  • Alex

    Hi Tom,

    This is not something that happens regularly. It's up to you, Brizy users. If you do not use Brizy for malicious purposes then there will be no spam/phishing complaints. So, there is no specific frequency in this regard. Probably if we exclude the free plan then the risk of such situations will be considerably minimized :).

    If we receive notifications from the registrar we will react in less than 12 hours (considering that we could also receive notifications during the night when the office is closed). But, once we have this reaction time, other Brizy users will not suffer and your sites will not be influenced by this.

    0
  • Tom O'Connor

    Hi Alex,

    Well we obviosuly have no intention to use Brizy for malication purposes, however since we are just 1 of all the customers of your platform we have no control on how others use the platform and rely on your team to protect the community.

    Hopefully if this is an isloated incident then there won't be a repeat. What we don't want is our site being taken offline becuase of other users and it directly impacts visitors and customers of our company.

    Tx,

    Tom

     

    0
  • Alex

    Hi Tom,

    sure, I understand your concern. The security of your sites is also our priority and we will certainly do our best to ensure that the situation does not recur.

    Merry Christmas!

    0

Please sign in to leave a comment.