zlacker

[return to "Supermicro server motherboards can be infected with unremovable malware"]
1. temp08+a9b[view] [source] 2025-09-28 17:47:30
>>zdw+(OP)
My favorite supermicro facepalm will always be when you could set the IPMI encryption cipher to "none" (ipmitool -C0) and bypass actually needing any password at all. (Though I don't think this was unique to supermicro actually?)
◧◩
2. transp+ldb[view] [source] 2025-09-28 18:19:34
>>temp08+a9b
With some server vendors, if you don't connect an ethernet cable to the BMC, it can intercept BMC-targeted traffic from the OS-connected ethernet port.
[go to top]