B
29

When a small shop hired me to check their security, I found their customer data was exposed. Figuring out how to tell them was tough.

3 comments

Log in to join the discussion

Log In
3 Comments
eva_thompson
You say it's all about the security setup, but an open port 3306 is basically a welcome sign for bots. They scan for it constantly. A simple password won't stop a targeted attack. I've seen shops get their whole customer list stolen because they thought a firewall rule was enough. Leaving that door unlocked is just asking for trouble.
4
perry.fiona
My last client had their database open on port 3306.
2
the_william
But isn't having a database open on port 3306 often needed for remote work? It's all about the security setup around it.
4