Attacks with novel HeadCrab malware variant hit Redis servers

Nearly half of the 2,300 internet-exposed Redis servers compromised with the HeadCrab malware as part of an attack campaign that was initially reported in early 2023 have been infected with an updated variant of the backdoor, according to The Hacker News. Several improvements have been added into HeadCrab 2.0, including a fileless loader mechanism aimed at increased stealth and persistence, as well as Redis MGET command usage for command-and-control communications, a report from Aqua Nautilus revealed.

Source: SC Magazine

 


Date:

Categorie(s):