Scan finds 4.9 million Redis services exposed on default port despite security warnings
A security scan of the internet on September 27, 2026, identified 4,937,184 services responding on Redis's default port 6379. Redis documentation explicitly warns that the database should not be exposed to the internet and should only be accessed within a trusted network. Only 142 of these services were definitively fingerprinted as Redis products, but the port itself is a strong indicator of exposure. The scan, conducted via ZoomEye, highlights a widespread misconfiguration that could allow unauthorized data access or file writes. Security guidelines advise restricting Redis to local interfaces, using passwords, enabling protected mode, and configuring firewalls.
This is an AI-generated summary. ShortSingh links to the original source for the complete article.

Discussion (0)
Log in to join the discussion and vote.
Log in