Do not open ports to the world — you will be hacked (risks)
Again and again, after conducting an audit, I face a wall of misunderstanding concerning my recommendations to hide ports behind a whitelist. Even very skilled admins/DevOps ask, 'Why?!?' I propose considering the risks in descending order of likelihood and damage. Configuration error DDoS by IP Brute force Service vulnerabilities Kernel stack vulnerabilities Amplification of DDoS attacks Configuration error The most typical and dangerous situation. How […]
