|
|
|
|
|
by iagooar
3449 days ago
|
|
I agree with you, but to me it is a problem that goes back to the people who made the decision of allowing admin accounts without a password. In a world where software stacks have multiple applications, programming languages and databases, it happens that people are not experts in everything. They make mistakes. Then there is a huge pool of companies who have poorly skilled devs coming from the Wordpress/Drupal/Prestashop/Etc background who many times don't actually know anything about security. Then there is the fact that MongoDB is known for having a very bad reputation among software engineers. I could personally write down many horror stories that I experienced myself, plus all the things you get to hear from friends and tech blogs. Maybe after this attack some companies ban it from their software stacks. I really hope they do so. The world would be a better place without MongoDB. |
|
No. Just.. no.... Security of YOUR system is YOUR responsibility.
> In a world where software stacks have multiple applications, programming languages and databases, it happens that people are not experts in everything.
Hire one.
> Maybe after this attack some companies ban it from their software stacks.
Or maybe decision makers realise that yes, you do need to pay for skills.