Over 3.6 million MySQL Servers Are Exposed On The Internet

Share post:

Analysts at cybersecurity research group The Shadowserver Foundation have uncovered 3.6 million vulnerable MySQL servers on the internet. 2.3 million of these servers are connected over IPv4, while 1.3 million devices are connected over IPv6.

The United States stands in the center as the country with the most accessible MySQL servers with more than 1.2 million servers from the country. Other countries with a high number of exposed servers are China, Germany, Singapore, the Netherlands and Poland.

The detailed findings of the report include 3,957,457 exposed population on IPv4, 1,421,010 exposed population on IPv6, 2,279,908 “Server Greeting” responses on IPv4, and 1,343,993 “Server Greeting” responses on IPv6. In addition, 67% of all MySQL services found are accessible from the internet.

“While we do not check for the level of access possible or exposure of specific databases, this kind of exposure is a potential attack surface that should be closed,” the report from Shadowserver explains.

Administrators are advised to block these instances so that only authorized devices can connect to them. It is also recommended to implement other security measures for publicly exposed servers.

Some of the measures include strict user policies, changing the default access port (3306, activating binary logging, closely monitoring all queries and enforcing encryption.

The sources for this piece include an article in BleepingComputer.

SUBSCRIBE NOW

Related articles

North Korean hacker infiltrates US security vendor, loads malware

KnowBe4, a US-based security vendor, unknowingly hired a North Korean hacker who attempted to introduce malware into the...

CrowdStrike releases an update from initial Post Incident Review: Hashtag Trending Special Edition for Thursday July 25, 2024

Security vendor CrowdStrike released an update on from their initial Post Incident Review today. The first, and most surprising...

Security vendor CrowdStrike issues an update from their initial Post Incident Review

Security vendor CrowdStrike released an update from their initial Post Incident Review (PIR) today. The company's CEO has...

CrowdStrike CEO summoned by Homeland Security committee over software disaster

CrowdStrike CEO George Kurtz has been called to testify before the U.S. House Committee on Homeland Security following...

Become a member

New, Relevant Tech Stories. Our article selection is done by industry professionals. Our writers summarize them to give you the key takeaways