logo

Expired Redis Service Abused to Use Metasploit Meterpreter Maliciously

ID: c5ffe9c6-3dae-5436-aab3-e6a90bc486d5

STIX ID: report--c5ffe9c6-3dae-5436-aab3-e6a90bc486d5

Feed Name: Dark Reading

Threat Score
70/100

Date Published: 2024-04-11

Date Updated: 2026-04-21

Author: Elizabeth Montalbano, Contributing Writer

...
...

Attackers are abusing misconfigured or unpatched Redis 3.x servers exposed to the Internet to install PrintSpoofer (privilege escalation) and deploy Metasploit Meterpreter (staged), enabling remote code execution, persistence (cron/SLAVEOF techniques), and lateral movement; ASEC published IOCs and recommends immediate patching/upgrading of Redis and restricting external access.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.