Home / Companies / Redis / Blog / Post Details
Content Deep Dive

Is Redis Enterprise susceptible to RedisWannaMine?

Blog post from Redis

Post Details
Company
Date Published
Author
Redis
Word Count
533
Company Posts That Month
7
Language
English
Hacker News Points
-
Post removed?
No
Summary

This new cryptojacking attack incorporates Redis in a complicated manner, but fortunately, following basic configuration and security best practices can prevent it from affecting users. Redis Enterprise is completely impervious to this attack due to its built-in multi-layer security control, including access control, authentication, authorization, forensics, encryption, and protection layers. The attack exploits poor decisions related to Redis settings, such as running on the open internet without a password or firewall, using default port 6379, and manually altering configuration settings to increase vulnerability. Users can protect themselves by following security best practices and using Redis Enterprise, which provides a pure separation between management and data-plane planes, making it more secure than open-source Redis.

Trends Found in this Post

No tracked trend matches for this post yet.

Use This Data

Use this post, company, and trend context to find content marketing opportunities, perform competitive analysis, or address product feature gaps via the Plushcap MCP server or the Plushcap API.