Skip to content

Comment on Root access to MySQL.com sold for $3k - now serving malwareparent

Comments

I think that they just have access to 1 or more web servers. The hostname in the screenshot is http3.web.mysql.com. An organization like Oracle would presumably have multiple levels of security. It's likely the web servers would run in a DMZ, i.e. the lowest level of security.

Did you only look at 1/3 of the screenshot or did they update the article?

The screenshot shows

http1

http2

http3

with a root shell on each. Are there more than 3? Maybe. Maybe not.

AboutSource Built by g1lg1l

Hackerly is an independent reader for Hacker News, built on the public HN API. Not affiliated with Y Combinator.