The version of the exposed MongoDB was 4.0.4, where the default configuration offers protection against online access and would not have allowed the data to be reachable over the internet. However, online exposure is still possible when the server is behind a firewall that has been reset.
https://www.bleepingcomputer.com/news/security/unprotected-mongodb-exposes-over-200-millions-resumes/
No comments:
Post a Comment