Many Memcached servers are still vulnerable
Researchers at Talos do Internet scans at two times, late February and July to see how many servers are running unpatched versions. The results are surprising.
Scan results in February:
The five countries with the most vulnerable servers are the United States, followed by China, Britain, France and Germany.
Scan results in July:
After comparing the results of the two scans, the researchers found that only 2,958 servers were vulnerable to the scan in February before patching before July, while the rest were still vulnerable to remote hacking.
It is very important for organizations to ignore this patch, and Talos researchers warn that this vulnerable Memcached will be the target of ransomware attacks similar to the one that attacked. MongoDB database at the end of December.
Although unlike Mongo DB, Memcached is not a database, but it still contains sensitive information and interferes with the service, which can lead to other obstacles on independent service.
The error on Memcached will allow hackers to replace the saved content with malicious content to change the website content, create phishing sites, extort money, poison the link, attack the victim computer, bring hundreds of millions of users. into a dangerous state.
'As more and more computer worms exploit vulnerabilities, this needs to be alarmed with administrators around the world,' the researchers concluded. 'Untreated weaknesses when exploited can affect organizations worldwide, affecting serious work. These systems should be patched immediately to minimize risks'.