menu
techminis

A naukri.com initiative

google-web-stories
Home

>

Technology News

>

Actively e...
source image

Ars Technica

2w

read

86

img
dot

Image Credit: Ars Technica

Actively exploited vulnerability gives extraordinary control over server fleets

  • Hackers are exploiting a severe vulnerability in the widely used AMI MegaRAC firmware package, allowing them complete control over servers inside data centers.
  • The vulnerability, identified as CVE-2024-54085, permits authentication bypasses by sending a simple web request to a vulnerable BMC device over HTTP.
  • CISA has warned about the exploitation of this vulnerability, and Eclypsium, the security firm that discovered it, suspects espionage groups linked to the Chinese government could be involved.
  • Administrators are advised to check all BMCs in their server fleets for vulnerability and to consult their server manufacturers for patches and guidance due to the broad scope of potential exploits.

Read Full Article

like

5 Likes

For uninterrupted reading, download the app