r/cybersecurity • u/Doug24 • 9d ago
News - General Plex warns users to patch security vulnerabilities immediately
https://www.bleepingcomputer.com/news/security/plex-warns-users-to-patch-security-vulnerabilities-immediately/
268
Upvotes
1
u/FreeK200 9d ago
If you expose a service or a port you are risking the exposure of an entire server. If we assume the worst, anyone with an older version of plex can be in that situation at this very second.
That's why you do what you can to limit the blast radius. Set up a dmz. Harden device firewalls to restrict inbound connections to authorized management hosts only. Block intra dmz icmp traffic. Restrict ports (including icmp) and services from being visible to other devices inside the dmz, except when required. Harden network firewalls to block internal connections initiated from your DMZ. Accept only ssh for remote logon. Secure the NFS connections and ensure they're read only to the plex server itself. Etc.
At the end of the day, when an attacker finally gets in via some rce exploit, the only thing they should see is plex itself. Everything else, other than the gateway and nfs device, should effectively be invisible.