{"id":1756,"date":"2020-08-24T18:01:44","date_gmt":"2020-08-24T12:31:44","guid":{"rendered":"https:\/\/www.tikaj.com\/?p=1756"},"modified":"2024-01-11T11:25:46","modified_gmt":"2024-01-11T05:55:46","slug":"we-scanned-5-million-ip-addresses-for-database-vulnerabilities-analysis-and-insights-2020","status":"publish","type":"post","link":"https:\/\/www.tikaj.com\/blog\/we-scanned-5-million-ip-addresses-for-database-vulnerabilities-analysis-and-insights-2020\/","title":{"rendered":"We scanned 5 million+ IP Addresses for database vulnerabilities : Analysis and Insights, 2020"},"content":{"rendered":"\n
Recently, in the month of August 2020, our team at TIKAJ<\/a> conducted an extensive research to discover open Mongodb<\/a> instances all over the internet. Even after 8 years of being reported<\/a> Mongodb open port vulnerabilities are being exploited in wild for data breaches. With this research, we wanted to find out how educated and serious developers are about this vulnerability.<\/p>\n\n\n\n We scanned 5 million+ IP addresses over the internet within 4 days, out of which exactly 1,42,366 servers had port 27017 open for connection. What we discovered as a result of this 4 days long research, was a whopping number of 1006 unauthenticated Mongodb server instances, either compromised or waiting to be compromised.<\/p>\n\n\n\n Since the numbers amused us pretty well, we jumped in to get our hands dirty and reveal some more patterns in this vast data pool. Not to our surprise, out of these open unauthenticated database servers, 863 have already been compromised and breached, and are held for ransom. The total accumulative size of the discovered data is about ~ 4 Terabytes.<\/p>\n\n\n\nThe Statistics<\/h3>\n\n\n\n