3 ms·
Now I'm a little scared. A few months ago there was a post [0] by antirez about how dangerous it is to leave a redis instance open to the world, in that an att
by corecoder 10y ago
Now I'm a little scared.
A few months ago there was a post [0] by antirez about how dangerous it is to leave a redis instance open to the world, in that an attacker could, for instance, authorize an SSH key on your machine and gain remote connectivity.
While the average workstation is not usually reachable from the outside network, you could probably combine some variant of that attack (the first thing that comes to mind: overwrite .bash_profile) with the attack of this article, causing a lot of fun.
[0] http://antirez.com/news/96 http://antirez.com/news/96