exposed-database

1 article
sort: new top best
clear filter
0 5/10

A developer's PostgreSQL instance running in Docker was publicly exposed with default credentials (postgres:postgres), allowing an automated attacker to delete the database and demand ransom. The root causes were Docker's default port binding behavior, missing firewall rules, and default credentials left unchanged.

Akseli Lahtinen scalie.computer linkhut PostgreSQL Docker UFW
akselmo.dev · birdculture · 1 day ago · details · hn