GoDaddy.com LLC notified the California AG of a security incident affecting VPS servers. Malware replaced SSH binaries, allowing unauthorized third-party remote access and capturing SSH passwords. The incident occurred in October 2019. GoDaddy eliminated the malware, reinstalled good binaries, and removed affected backups. Customers were advised to reset credentials and audit servers.