Do Not Reuse Usernames

Details

Utilizing unique database accounts across applications will reduce the impact of a compromised MySQL account.

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Add/Remove users so that each user is only used for one specific purpose. Impact: If a user is reused then a compromise of this user will compromise multiple parts of the system and/or application.

Supportive Information

The following resource is also helpful.

This control applies to the following type of system Unix.

Source

Updated on July 16, 2022
Was this article helpful?

Related Articles