Red Securium Company Provide Web Services | Web Development | Software Development | Digital Marketing Service | Video Marketing Service | Video Logo Service & SEO Service.
www.redsecurium.org Contact Us - +91 120 429 1672
Researchers found new remote attack against Server firmware (BMC) that renders server unbootable by exploiting the vulnerabilities and gain the systems remote access.
This Attack Starts by pushing an update to the firmware and pass the malicious firmware image into Baseboard Management Controller (BMC) which causes servers completely unbootable and failed to recover.
A baseboard management controller (BMC) is a specialized service processor that monitors the physical state of a computer, network server or other hardware device using sensors.
BMC also used to remotely configure the system without relying on the host operating system or applications.
Data centers or cloud has own physical servers, firmware, hardware component that has its own vulnerabilities and the tools used to manage servers can be taking advantage by attackers.
Attack Process to Corrupt the Server Firmware
In this case, Attacker can remotely compromise the system by taking advantage of firmware or hardware vulnerabilities such as exploiting Apache Struts. or using compromised credentials.
In order to bricks a server, Researchers demonstrated a remote attack that describes to bypass a malicious firmware image to the BMC over this interface.
In order to communicate with BMC researchers from eclypsium using the network capabilities of the Intelligent Platform Management Interface (IPMI) protocol and also using host-based interface known as the Keyboard Controller Style (KCS) to pass the malicious firmware image.
According to eclypsium, “malicious BMC firmware update contains additional code that, once triggered, will erase the UEFI system firmware and critical components of the BMC firmware itself. “
This change will make the host and BMC unbootable and rendering it unusable and it completely recover the system to fail.
Top 12 Information Security Analyst Interview Questions & Answers 1) Explain what is the role of information security analyst? From small to large companies role of information security analyst includes Implementing security measures to protect computer systems, data and networks Keep himself up-to-date with on the latest intelligence which includes hackers techniques as well Preventing data loss and service interruptions Testing of data processing system and performing risk assessments Installing various security software like firewalls, data encryption and other security measures Recommending security enhancements and purchases Planning, testing and implementing network disaster plans Staff training on information and network security procedures 2) Mention what is data leakage? What are the factors that can cause data leakage? The separation or departing of IP from its intended place of storage is known as data leakage. The factors that are respons...
Take a look at a modern, digital camera today, and you’ll probably find it uses an SD card in order to save information. These small, convenient little disks can carry a lot of information on them, and can easily transfer your information from camera to computer. Unfortunately, SD cards also come with a drawback. They are small, fragile, and easily damaged. Forget the SD card in your pocket until you discover it in the washer, or scratch it up taking it in and out of the camera, and you may end up being unable to access your data. Sometimes this is not a big deal, and you simply go and get another SD card. At other times, the loss of the priceless pictures or other information on that card is enough to leave you scrambling to look up SD card recovery on Google. If you looked, you might have a bit of sticker shock. SD card recovery can cost as much as $3,000 to get your lost data back, depending on how many GB of data were stored. Even cheap options can run you $400, f...
Tr0ll 1.0 is an intentionally vulnerable machine, which is more of a CTF like type than real world scenario. Nevertheless, this machine has its own difficulties and you can learn some new stuff from it. So, let’s start. Enumeration Phase Let’s first run netdiscover to find the IP of our machine. netdiscover -r 192.168.1.1/24 After that, we run our typical nmap scan to see the open ports in the machine. nmap -A -sS -Pn -vv [target] Great we see many interesting stuff here. First of all, there is an open FTP port and we can connect to it with anonymous access . Also there is an open http port, we will run a nikto scan for it. The ssh port will be valuable later. From the nikto scan we got an interesting /secret/ folder. When we get inside, we can understand why the machine got this name. Nothing interesting here, as you can see. we got trolled Let’s connect ...
Comments
Post a Comment