Site icon DataFLOQ

Attackers Can Intercept Data From CouchDB and Hadoop Databases

Intel Data Center GPU codenamed Crescent Island architectural slide showcasing Xe3P AI optimized GPU IP, up to 480GB LPDDR5x memory capacity, and a 350W air-cooled PCIe form factor.

Intel’s Crescent Island GPU targets AI inference economics by prioritizing massive LPDDR5x memory capacity over costly HBM architectures within a practical 350W air-cooled design.

Is Your Big Data Vulnerable?

The year 2017 started on a dramatic Hollywood-style note for a few database-service providers. In a series of events, some database became victim of ransomware. This raised questions about the security of cloud-based databases which has been the biggest drawback of cloud so far.

MongoDB and Elasticsearch Fell Victim

In what seemed to be a hacking attempt by an individual or a group, thousands of MongoDB-based databases fell victim to a cyber-attack. The hacker claimed to have access to many databases and threatened to delete or encrypt the data if a ransom was not paid.

While many were trying to get over the MongoDB instance, another news regarding Elasticsearch clusters started doing rounds. In this case, the data was deleted from the cluster and a message asking for ransom was left behind. Experts are working on establishing whether this is an isolated event or is it related to the MongoDB attack.

Hadoop and CouchDB Instances

When Hadoop and CouchDB started facing similar issues where data was deleted from the instances, the first thought that crossed many peoples mind was that these have also been hit by ransomware. But, the reality came out to be different than thought. The hackers targeting Hadoop left messages that asked for stronger security systems to avoid such attacks, the CouchDB instances turned out to be ransomware.

Like in almost all ransom cases, Big data developers experts do not believe that the ransom should be paid because there is no guarantee that the hackers have taken a back-up of your data before deleting it.

The Mistakes

These attacks do not naturally imply that databases are not safe for data. It throws light on the mistakes that people often make by subjecting the database to public forum and many such issues like these. Immediately after the attacks on MongoDB, Elasticsearch, CouchDB, and Hadoop, companies and database experts starting sharing blogs on the common mistakes that make us prone to such attacks.

It is these mistakes and not a lapse in database security system that has enabled hackers to delete the data. It is better to understand that each of the platform has a security system and the suggestions to tackle the ransomware issue would differ from one to other. For details on how MongoDB, Elasticsearch, CouchDB, and Hadoop suggest handling the issue, visit the respective pages.

The Preventive Steps

If you have already become a victim of the ransomware, you and your team would have by now known what went wrong and how to overcome the issue. If not, the official pages above would serve as the best guide. But, if you have not become a victim yet, then it is time to revisit a few things:

Unfortunately, attacks like these only seem to be increasing without any respite in the future. Our best chances are to avoid making common mistakes and have a plan to curb issues like these if they ever crop up.

Exit mobile version