Back Issues/Search Home → Calendar → Archive → Current Issue → Popular →

All issuesVolume 341, Issue 3IT NewsBackup

Backup Security Best Practices: What a Red Teamer Taught Us About Getting Hacked

Backup Central, Tuesday, August 18th, 2026

Red teamers routinely exploit backup systems via default passwords and over-privileged service accounts.

Backup servers are frequently the least secured yet most powerful systems on a network, making them prime attack targets.

Key vulnerabilities include default passwords left unchanged, unmonitored service accounts with excessive privileges, and weak admin authentication.

Recommended fixes include changing defaults, inventorying service accounts, separating admin logins, implementing MFA or passkeys, and monitoring for anomalies. The goal is to stop attackers from using backups as a launchpad for broader network compromise.

more →  ·  More from Backup →