More than 2,200 etcd servers are open to the internet and exposing credentials publically. Etcd is a type of database that stores data across a cluster of machines and is used by many companies in protection environments. Before etcd version 2.1, it was completely an open system and anyone who accesses to API could change the keys. Attackers can mess with configurations by stealing credentials and exfiltrate the data. In total he extracts password 8781, aws_secret_access_key 650, secret_key 23, private_key 8.676, and API keys.”]
Source: https://gbhackers.com/thousands-servers-running-etcd/

