Wednesday, November 14, 2007

Hacker Finds 492,000 Unprotected Oracle, SQL Database Servers

Ryan Naraine writes on ZDNet's "Zero Day: Blog:

A survey by renowned database hacker David Litchfield has found a whopping 492,000 Microsoft SQL and Oracle database servers directly accessible to the Internet without firewall protection.

Litchfield, co-founder of Next Generation Security Software, ran port scans against 1,160,000 random IP addresses — TCP port 1433 (SQL Server) and 1521 (Oracle) — and found about 368,000 Microsoft SQL Servers directly accessible on the Internet and around 124,000 unprotected Oracle database servers.

More here.

0 Comments:

Post a Comment

<< Home