Thousands of server motherboards are vulnerable to controller flaws that could give attackers hardware-level control

https://www.techspot.com/images2/news/ts3_thumbs/2026/08/2026-08-06-ts3_thumbs-355.jpg

Serving tech enthusiasts for over 25 years.
TechSpot means tech analysis and advice you can trust.

Facepalm: Attackers are targeting hardware that keeps modern servers running, with the weak point being the baseboard management controller (BMC) installed on the motherboard. New research shows that thousands of these controllers, shipped for years by major server manufacturers, remain exposed on the Internet and within corporate networks due to serious, long-standing flaws that are still easy to exploit.

Baseboard management controllers, or BMCs, are small computers built into nearly every enterprise server. They have their own firmware, operating system, network stack, and IP address. Administrators use them to reboot machines, install updates, reinstall operating systems, and monitor hardware, even when the main server is powered off or unresponsive.

That deep level of control makes BMCs valuable for IT operations but dangerous if attackers gain access. If compromised, a BMC can give an...

Copyright of this story solely belongs to techspot.com. To see the full text click HERE

Read more