Just came across this from a UKNOF thread:
http://threatpost.com/ipmi-protocol-bmc-vulnerabilities-expose-thousands-of-servers-to-attack
http://threatpost.com/ipmi-protocol-bmc-vulnerabilities-expose-thousands-of-servers-to-attack
Every WSI/Datashack customer who requests IPMI and doesn't secure it, if you can even do that with the trashy one they use, certainly does. Google indexes a lot of these things. It's an all you can eat buffet of wide open onboard IPMI. Googling for fun I see universities, large corporations, and even government entities with the login pages publicly accessible.Does anyone actually have BMCs facing the open internet?
Or just simply use shodanGoogling for fun I see universities, large corporations, and even government entities with the login pages publicly accessible.