The OA system of a second-level unit of China Coal Group can be infiltrated, resulting in a large number of commercial secrets leaked.

Source: Internet
Author: User

The OA system of a second-level unit of China Coal Group can be infiltrated, resulting in a large number of commercial secrets leaked.

Strong patriotism

An Internet public OA system of a second-level enterprise of China Coal Group, and attackers can easily access and obtain a large number of sensitive commercial secrets due to brute force cracking and weak passwords, including employee Address Book, company email, attendance, salary, company deposit, contract documents, and process approval. Because it is too harmful, it is not the unit address.

1. Enter the OA system:

2. Use the domino vulnerability to obtain employee information:

3. Fund approval system

4. Company deposits


5. Financial email

Solution:
1. Important systems should not be placed on the Internet. 2. Modify weak passwords. 3. Prohibit brute force enumeration.

Related Article

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.