Many of these old protocols don't die easily and tend to linger around forever. Maybe there's a nostalgic element to keeping them alive for sysadmins :)
Take Shodan results with a grain of salt. When you look at the entire IP4 space, you will find a little of anything.
In a decade of doing pen tests in a mix of professionally capacity and informally for friends, I have never seen echo or daytime, and saw QOTD once on a test box on the CS department of a university.
Of course, working with organizations who sought out someone to do a pentest probably self-selects out networks which would have this kind of nonsense. Reducing attack surface by turning off services or blocking them at various firewalls has been standard operating procedure for IT for at least 2 decades.
Yeah, out of 4 billion addresses there are ~20,000 QOTD servers so I'm not arguing that they're pervasive :) Just saying that they're not completely dead yet.
Comments
These protocols may be deprecated, they may be unused and they may be out of sight but they aren't completely dead yet:
https://www.shodan.io/report/9xshqrdb
Many of these old protocols don't die easily and tend to linger around forever. Maybe there's a nostalgic element to keeping them alive for sysadmins :)
Take Shodan results with a grain of salt. When you look at the entire IP4 space, you will find a little of anything.
In a decade of doing pen tests in a mix of professionally capacity and informally for friends, I have never seen echo or daytime, and saw QOTD once on a test box on the CS department of a university.
Of course, working with organizations who sought out someone to do a pentest probably self-selects out networks which would have this kind of nonsense. Reducing attack surface by turning off services or blocking them at various firewalls has been standard operating procedure for IT for at least 2 decades.
Yeah, out of 4 billion addresses there are ~20,000 QOTD servers so I'm not arguing that they're pervasive :) Just saying that they're not completely dead yet.
Top products, second one: Windows qotd. Trying to google it, and google immediately suggest third term for the query: exploit.
Well.
Hell, many of them are enabled by default or poor decisions by whoever builds the SOE.