2019-11-16 at 7:36 pm
#15608

Participant
Software misconfiguration should be tested for the security setting before release. The databases all ship with default accounts, and when you install applications on your database, they install default accounts, too. All those default accounts have default passwords, and all those default passwords are easy to find on the Internet. So if you leave them in place, it’s kind of like you’re leaving a window open into the database. The authenthication can be misconfigured so all users can access without right. Lastly, the system security should be authorized only few staff to gain access and need regular update configuration frequently.