• Categories
    Category
  • Categories
    Category
  • News
  • Tutorials
  • Forums
  • Tags
  • Users
News Comments FAQ Related Articles

Nearly 13,500 iSCSI storage clusters are without authentication

5391

More than 3,500 iSCSI storage clusters on the internet are left without any password protection. This was detected by a PenTester, who goes under the name 'A Shadow.'

Internet Small Computer Systems Interface (iSCSI) is a protocol used for linking workstations and servers to data storage devices such as disk arrays and NAS devices.When left unprotected, these iSCSI storage clusters may lead to unauthorized access to disk arrays and NAS devices.

Legitimate files could possibly be replaced with malware by attackers. They can also insert backdoors inside backups, or steal any sensitive information stored on the unprotected storage devices.

A Shadow, the pentester who detected over 13500 unprotected iSCSI storage clusters, analyzed the leaky storage devices and found out that these clusters belong to private companies.A Shadow also stated that this may leave a ‘dangerous backdoor’ that could allow attackers to plant ransomware-infected files on companies’ networks, steal company data, or drop backdoors inside backup archives.

Tags:
godwinstein
Author: 

Comments ( 0 )

No comments available

Add a comment

Frequently asked questions ( 0 )

No questions available

Related Tutorials in Nearly 13,500 iSCSI storage clusters are without authentication

Related Tutorials in Nearly 13,500 iSCSI storage clusters are without authentication

How to create and setup LUNs using LVM
How to create and setup LUNs using LVM
Jun 1, 2016
How to Install ISCSI-SERVER(TARGET) on CentOS 6.9
How to Install ISCSI-SERVER(TARGET) on CentOS 6.9
Dec 28, 2017
How to Install ISCSI_CLIENT (INITIATOR) on CentOS 6
How to Install ISCSI_CLIENT (INITIATOR) on CentOS 6
Jan 2, 2018
How to Setup Data-Centers with Cluster and Add ISCSI Storage in Linux
How to Setup Data-Centers with Cluster and Add ISCSI Storage in Linux
Jul 5, 2016
How to configure Basic Authentication in Nginx using centos
How to configure Basic Authentication in Nginx using centos
Jun 19, 2018
How To install and configure User Authentication in Squid on Debian 11.3
How To install and configure User Authentication in Squid on Debian 11.3
Oct 29, 2022

Related Forums in Nearly 13,500 iSCSI storage clusters are without authentication

Related Forums in Nearly 13,500 iSCSI storage clusters are without authentication

CentOS
tommyhilten class=
ISCSI : how to delete iscsi target in centos
Oct 27, 2017
PostgreSQL
michael class=
Postgres password authentication fails
Nov 3, 2021
ISCSI
john class=
How to extend the size of LVM assigned for ISCSI storage
Feb 20, 2017
SSHD
caden class=
Permission denied (publickey,password)
Apr 15, 2019
ISCSI
hobbs class=
ISCSI target cannot login
Sep 2, 2017

Related News in Nearly 13,500 iSCSI storage clusters are without authentication

Related News in Nearly 13,500 iSCSI storage clusters are without authentication

Nearly 13,500 iSCSI storage clusters are without authentication
Nearly 13,500 iSCSI storage clusters are without authentication
Apr 6, 2019
Back To Top!
Rank
User
Points

Top Contributers

userNamenaveelansari
135850

Top Contributers

userNameayanbhatti
92510

Top Contributers

userNamehamzaahmed
32150

Top Contributers

1
userNamelinuxhelp
31040

Top Contributers

userNamemuhammadali
24500
Can you help Sebastian ?
How to change non required to required field in SuiteCRM Custom/Default Modules

How to change not required to the required field in SuiteCRM Custom/Default Modules?

Networking
  • Routing
  • trunk
  • Netmask
  • Packet Capture
  • domain
  • HTTP Proxy
Server Setup
  • NFS
  • KVM
  • Memory
  • Sendmail
  • WebDAV
  • LXC
Shell Commands
  • Cloud commander
  • Command line archive tools
  • last command
  • Shell
  • terminal
  • Throttle
Desktop Application
  • Linux app
  • Pithos
  • Retrospect
  • Scribe
  • TortoiseHg
  • 4Images
Monitoring Tool
  • Monit
  • Apache Server Monitoring
  • EtherApe 
  • Arpwatch Tool
  • Auditd
  • Barman
Web Application
  • Nutch
  • Amazon VPC
  • FarmWarDeployer
  • Rukovoditel
  • Mirror site
  • Chef
Contact Us | Terms of Use| Privacy Policy| Disclaimer
© 2025 LinuxHelp.com All rights reserved. Linux™ is the registered trademark of Linus Torvalds. This site is not affiliated with linus torvalds in any way.