🚨86K Internet-Connected BMCs Exposed to Critical Vulnerabilities
Your data center's backdoor is wide open
TL;DR
Researchers found over 86,000 Internet-connected Baseboard Management Controllers (BMCs) exposed to critical vulnerabilities. This includes a decade-old flaw still affecting many systems.
Over 86,000 internet-connected BMCs are vulnerable to serious security flaws, with more than half containing at least one critical vulnerability. These miniature computers embedded in motherboards provide out-of-band management and can be remotely backdoored. The most significant bugs affect Supermicro systems, making data centers particularly susceptible. Researchers discovered ILObleed, a malicious implant that wipes hard drives even after OS reinstallation. This is a major concern for anyone managing large server fleets.

Key Points
Researchers found over 86,000 Internet-connected BMCs exposed to critical vulnerabilities since at least 2013.
More than half of these devices (54%) contain one or more critical vulnerabilities like CVE-2013-4786 in IPMI 2.0 authentication protocol.
An open-source tool called OOBscan has been released to scan entire fleets of servers for BMC vulnerabilities, helping administrators identify and mitigate risks.
Administrators can defend against most attacks by setting long, unique usernames and complex passwords, disabling IPMI and KCS, isolating each BMC NIC individually, and avoiding shared VLANs.
The Cybersecurity and Infrastructure Security Agency (CISA) added a critical vulnerability in an AMI BMC to its list of exploited vulnerabilities.
Why It Matters
If you manage large server fleets or data centers, the exposure of over 86,000 Internet-connected BMCs to critical vulnerabilities is a major concern. These systems can be remotely backdoored, leading to deep and persistent access by hackers. The discovery of ILObleed highlights the severity: even after OS reinstallation, hard drives remain at risk.
Frequently Asked Questions
Why does this matter?
If you manage large server fleets or data centers, the exposure of over 86,000 Internet-connected BMCs to critical vulnerabilities is a major concern. These systems can be remotely backdoored, leading to deep and persistent access by hackers. The discovery of ILObleed highlights the severity: even after OS reinstallation, hard drives remain at risk.
What happened?
Researchers found over 86,000 Internet-connected Baseboard Management Controllers (BMCs) exposed to critical vulnerabilities. This includes a decade-old flaw still affecting many systems.
Comments
Be the first to comment
Enjoyed this article?
Get it daily. 7am. Free. Reads in 5 minutes.