Путин хуйло 08/03/2026 (Mon) 20:34 Id: e543b4 No.890524 del
(87.56 KB 892x689 map.jpg)
(152.17 KB 1170x871 00a4c-1170x871.png)
>>890467
> кибервойска рдк
Начиная от официозной зелебобной потшеной IT Army, заканчивая Black Owl Team, Silent Crow (недавно признаны экстремистами) и еще куча-мала разных групп, такие сейчас: "Мы что для тебя, шутка какая-то?"

Читни про общую уязвимость почти всех дата-центров, в плате BMC (Board Management Control):
https://lavahq.io/research/bmc-exposure-alert

> We identified 36,872 internet-exposed server-management interfaces running IPMI, a protocol introduced more than two decades ago for remote control over physical servers. Of the systems we tested, 24,650 disclosed password-derived authentication hashes before login because of CVE-2013-4786, a vulnerability in the IPMI 2.0 authentication protocol that enables offline password-cracking attempts. To visualize the scale of the exposure, we created BMCRadar, an interactive map of the internet-exposed BMC interfaces identified during this research.

> More than 30% of the returned hashes were associated with passwords that could be recovered using common wordlists and predictable factory chassis-sticker formats. We also found evidence that servers with internet-exposed BMC interfaces are already being targeted and exploited in the wild.

В ответ на запрос аутентификации платы контроля дата-центров (большинство) отдают HMAC-SHA1-хэш от пароля и данных сессии. Их уже можно брутфорсить на видевокарте. Кроме того
> Endpoints accepting an empty username with a weak password 6,240 (16.9%)
> Endpoints with a named account using a common password 2,340 (6.3%)

Сможешь забрутить / подобрать валидный пароль к сессии, приконнектиться и вайпнуть нулями (dd if=/dev/zero of=/dev/nvme0n1p1 или dd if=/dev/zero of=/dev/sda1) UEFI/GPT-раздел хотя бы одной платы в Рашке, хотя бы один дата-центр станет неуправляем. А кто сейчас держит больше всего дата-центров в Рашке? Все это время вставать с дивана необязательно.