根据Censys平台的统计,截至12月27日,美国有近2万台MongoDB服务器暴露在公网上,中国以近1.7万台排第二,德国接近8000台。这个分布说明MongoDB在全球范围内被广泛使用,各国都面临相当程度的风险敞口。
The memory leak security vulnerability allows unauthenticated attackers to extract passwords and tokens from MongoDB servers.
Those responsible for a MongoDB instance cannot rest easy: an exploit for a critical vulnerability makes upgrades even more urgent now.
You didn't think you'd get to enjoy your time off without a major cybersecurity incident, did you? A high-severity MongoDB Server vulnerability, for which proofs of concept emerged over Christmas week ...
US and Australian agencies warn MongoBleed vulnerability in MongoDB is under active exploitation - SiliconANGLE ...