The Actual News

Just the Facts, from multiple news sources.

Thousands of servers can be backdoored by exploiting buggy motherboard controllers

Thousands of servers can be backdoored by exploiting buggy motherboard controllers

Summary

Researchers revealed that many servers from top manufacturers have serious security problems in their motherboard controllers, called Baseboard Management Controllers (BMCs). These issues allow hackers to remotely access and control servers, even if the servers are turned off, using long-known and newly found bugs.

Key Facts

  • Baseboard Management Controllers (BMCs) are small computers built into server motherboards to help manage them remotely.
  • BMCs operate independently and can monitor or control servers even if the main server is off or not responding.
  • Security expert HD Moore found over a dozen new vulnerabilities in BMCs from major brands like HPE, Dell, Lenovo, Huawei, and others.
  • More than 86,000 BMCs are publicly accessible on the internet, and over half have critical security flaws.
  • One major vulnerability, CVE-2013-4786, from 2013, still affects about 75,000 devices, allowing attackers to crack administrator passwords offline.
  • These vulnerabilities let attackers bypass authentication and take over the BMC, potentially controlling the whole server.
  • Many BMCs inside corporate networks also remain vulnerable, with nearly 29% having critical security issues.
  • The researcher is keeping details secret for now to give companies time to fix these bugs.
Read the Full Article

This is a fact-based summary from The Actual News. Click below to read the complete story directly from the original source.