logo

HeadCrab 2.0: Evolving Threat in Redis Malware Landscape

ID: 3dd6452d-b379-5488-a957-24eed0b51416

STIX ID: report--3dd6452d-b379-5488-a957-24eed0b51416

Feed Name: Aqua Security Blog

Threat Score
75/100

Date Published: 2024-01-29

Date Updated: 2026-04-26

...
...

Aqua Nautilus researchers describe HeadCrab 2.0, a more advanced Redis-targeting malware that replaces on-disk payloads with a fileless loader and hides C2 by hijacking the standard Redis MGET command; the report details hooking techniques, detection workarounds, a global scan that identified roughly 1,100 additional compromised servers (nearly doubling prior counts), and recommendations for evolving detection and monitoring.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.