Eric Rafaloff

My personal blog on software development and security

Home » Category: Network Security

Redis Post-Exploitation in the Wild

My team saw a failed attempt to compromise one of our Redis servers today. In lieu of script kiddies reading antirez’s article about Redis security, many system administrators are seeing this happen to their systems. Although one of our QA servers was running the incorrect Redis config file (whoops!), we were fortunate that the user Continue Reading