Over 500,000 windows servers worldwide at risk of cyber attacks
More than half a million Windows servers worldwide are now vulnerable to cyber attacks after their end-of-life (EOL) status took effect, according to a recent report by UK-based ShadowServer.

Unpatched servers open door to hackers
With 511,000 servers using outdated Windows versions, hackers are poised to exploit these security holes, potentially leading to devastating breaches of sensitive company data. The staggering figure represents a significant vulnerability in the global tech landscape.
Furthermore, a significant portion of these unpatched servers, numbering 227,000, have also ceased to receive extended security updates (ESUs). This means that even essential security patches are no longer available, leaving these systems even more exposed to malicious activity.
The US bears the brunt of this vulnerability, with over 100,000 of these EOL servers, making it the country most at risk. In Europe, the major economies of France, Germany, Italy, and Spain also have substantial numbers of affected servers.
These unpatched Windows Internet Information Services (IIS) servers act as gatekeepers, managing requests from internal networks and the internet to deliver content. By analogy, maintaining an outdated IIS server is akin to having an old lock with multiple keys easily replicable, compromising the security of the entire system.
If hackers gain access to these vulnerable servers, they can install ransomware and exfiltrate valuable client data, potentially leading to substantial financial losses and reputational damage for affected companies. The consequences could be far-reaching, including denial-of-service (DoS) attacks and targeted ransomware campaigns.