I built a site for a client that is using RiskRecon to audit their security posture. The only thing that they are flagging is *Unsafe Network Services*.
They are reporting that both MySQL and postgresql are running on the site and are unsafe. As far as I know, blocking access to those services would bring the site down. Correct? I am already using Wordfence and 2FA for logins. All plugins are auto-updated. I feel like this is just something that is a known risk of hosting a website. Which by the way is not hosted on this client’s internal network but a top webhosting comapny.
[https://imgur.com/a/e5Xo3B9])Thoughts?
[ad_2]