>>890467 > кибервойска рдк Начиная от официозной зелебобной потшеной IT Army, заканчивая Black Owl Team, Silent Crow (недавно признаны экстремистами) и еще куча-мала разных групп, такие сейчас: "Мы что для тебя, шутка какая-то?"
> We identified 36,872 internet-exposed server-management interfaces running IPMI, a protocol introduced more than two decades ago for remote control over physical servers. Of the systems we tested, 24,650 disclosed password-derived authentication hashes before login because of CVE-2013-4786, a vulnerability in the IPMI 2.0 authentication protocol that enables offline password-cracking attempts. To visualize the scale of the exposure, we created BMCRadar, an interactive map of the internet-exposed BMC interfaces identified during this research.
> More than 30% of the returned hashes were associated with passwords that could be recovered using common wordlists and predictable factory chassis-sticker formats. We also found evidence that servers with internet-exposed BMC interfaces are already being targeted and exploited in the wild.
В ответ на запрос аутентификации платы контроля дата-центров (большинство) отдают HMAC-SHA1-хэш от пароля и данных сессии. Их уже можно брутфорсить на видевокарте. Кроме того > Endpoints accepting an empty username with a weak password 6,240 (16.9%) > Endpoints with a named account using a common password 2,340 (6.3%)
Сможешь забрутить / подобрать валидный пароль к сессии, приконнектиться и вайпнуть нулями (dd if=/dev/zero of=/dev/nvme0n1p1 или dd if=/dev/zero of=/dev/sda1) UEFI/GPT-раздел хотя бы одной платы в Рашке, хотя бы один дата-центр станет неуправляем. А кто сейчас держит больше всего дата-центров в Рашке? Все это время вставать с дивана необязательно.