When you purchase through links on our site, we may earn an affiliate commission.Heres how it works.

This server has two admin accounts, and in many instances - users never changed the defaultpasswords.

In fact, Huntress spotted 35,000 attempts on a single host, within an hour.

A padlock resting on a keyboard.

The researchers said they saw active breaches in organizations working on plumbing, HVAC, concrete, and similar.

After gaining access, the attackers venture to enable features that allow them to run commands on theoperating system.

The researchers notified the company of their findings, but Foundation said the problem only affects on-prem instances.

In other words, software users should be the ones minding their security posture.

ViaBleepingComputer

More from TechRadar Pro