Redis RCE

John W8MEJ Menerick · June 14, 2015

If you haven’t already, time to patch Redis. Otherwise, please setup authentication in front of your Redis instance.

This remote code execution is going to get nasty http://www.shodanhq.com/search?q=redis_version and https://benmmurphy.github.io/blog/2015/06/04/redis-eval-lua-sandbox-escape/ . Time to bring up a few honeypots to grab some decent exploits and related kits.

Share on: