BAKU - Azerbaijan’s National Cybersecurity Agency has identified active threats to a number of information systems and warned that attacks could spread in a chain across broader network infrastructure.
The warning was published Oct. 8. According to the agency’s preliminary assessment, attackers in some of the recorded incidents exploited outdated software and standard or initial login credentials.
The weaknesses were found in database management systems including Microsoft SQL Server and Firebird.
How the Attacks Spread
After gaining unauthorized access to a poorly protected database, the attackers alter the compromised system and try to expand their control over its resources. In some cases, they place unauthorized files that are later used to obtain additional access capabilities.
The agency said the chained nature of the attacks increases the risk that an incident could move to other parts of a network and compromise additional information systems.
The advisory did not identify the number or owners of the affected systems or the suspected organizers of the attacks. It also did not report any data leak or disruption to critical infrastructure.
Source: Vesti Baku.