Threaticon
Toggle sidebar

You're viewing a limited, public preview. Log in for full access.

Log in User Guide
Log in Get started
News Kimi K3 Agents Found Redis Zero-Days and Built RCE Exploit, Researchers Say
The Hacker News
2 weeks ago

Kimi K3 Agents Found Redis Zero-Days and Built RCE Exploit, Researchers Say

By info@thehackernews.com (The Hacker News)

Redis shipped seven security releases on July 23 after researchers published authenticated RCE PoCs for stock Redis 6.2.22, 7.4.9, 8.6.4, and 8.8.0. All four chains require RESTORE. The Streams chains also need EVAL and XGROUP; the 8.8.0 chain needs EVAL and the bundled RedisBloom module. Redis says the underlying memory flaws may lead to remote code execution. Redis 6.2.23, 7.2.15, and 7.4.10

More from The Hacker News

Leaving Threaticon

This link opens an external site that isn't part of the platform.