Menu
Browse

Nayana

Primary URL Location Industry
nayana[.]co[.]kr
Country South Korea
Technology Icon
Technology
Profile

Nayana is a South Korean web hosting service that provides server infrastructure for hosting customer websites. The company operates Linux-based servers to deliver shared and possibly dedicated hosting solutions to its clients. Its core offering revolves around making web content accessible via the internet through its hosting platform.

According to the 2017 incident report, Nayana hosted approximately 3,400 customer websites across a fleet of 153 Linux servers at the time of the attack. The ransomware event encrypted data on those servers, affecting the hosted sites and leading to a ransom demand of $4.4 million in Bitcoin, which was later negotiated down to $1 million. The attack highlighted the scale of the company’s customer base and the concentration of its services on Linux systems. Recovery efforts were described as complex and ongoing, causing significant operational disruption for both the company and its clients.

The incident also revealed distinguishing attributes of Nayana’s technical environment, notably its reliance on outdated software components such as an obsolete Linux kernel vulnerable to the DIRTY COW exploit, deprecated Apache versions, and outdated PHP releases running with insecure configurations. These factors contributed to the successful intrusion by the Linux‑targeting Erebus ransomware variant, underscoring a specialization in Linux web hosting that, at the time, lacked current security patches. No further details about ownership, parent‑subsidiary relationships, or regulatory role are provided in the available sources.

Incidents
Linked incidents available to members
1 incident