<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Redis未授权 :: 标签 :: x7peeps</title><link>https://x7peeps.com/tags/Redis%E6%9C%AA%E6%8E%88%E6%9D%83/index.html</link><description/><generator>Hugo</generator><language>zh-CN</language><lastBuildDate>Sat, 20 Jun 2026 13:03:00 +0800</lastBuildDate><atom:link href="https://x7peeps.com/tags/Redis%E6%9C%AA%E6%8E%88%E6%9D%83/index.xml" rel="self" type="application/rss+xml"/><item><title>1. Redis未授权访问漏洞致官网被植入黑链</title><link>https://x7peeps.com/%E5%AE%89%E5%85%A8/%E5%BA%94%E6%80%A5%E5%93%8D%E5%BA%94/0x04%E5%BA%94%E6%80%A5%E5%93%8D%E5%BA%94%E6%8A%A5%E5%91%8A/%E7%BD%91%E9%A1%B5%E7%AF%A1%E6%94%B9/1.Redis%E6%9C%AA%E6%8E%88%E6%9D%83%E8%AE%BF%E9%97%AE%E6%BC%8F%E6%B4%9E%E8%87%B4%E5%AE%98%E7%BD%91%E8%A2%AB%E6%A4%8D%E5%85%A5%E9%BB%91%E9%93%BE/index.html</link><pubDate>Sat, 20 Jun 2026 11:00:00 +0800</pubDate><guid>https://x7peeps.com/%E5%AE%89%E5%85%A8/%E5%BA%94%E6%80%A5%E5%93%8D%E5%BA%94/0x04%E5%BA%94%E6%80%A5%E5%93%8D%E5%BA%94%E6%8A%A5%E5%91%8A/%E7%BD%91%E9%A1%B5%E7%AF%A1%E6%94%B9/1.Redis%E6%9C%AA%E6%8E%88%E6%9D%83%E8%AE%BF%E9%97%AE%E6%BC%8F%E6%B4%9E%E8%87%B4%E5%AE%98%E7%BD%91%E8%A2%AB%E6%A4%8D%E5%85%A5%E9%BB%91%E9%93%BE/index.html</guid><description>某出版社官网出现黑链，溯源发现攻击者利用Redis未授权漏洞获取SSH权限，再通过TRS服务器漏洞植入Webshell。</description></item><item><title>4. 账号信息上传公网，致内网20多台机器受感染</title><link>https://x7peeps.com/%E5%AE%89%E5%85%A8/%E5%BA%94%E6%80%A5%E5%93%8D%E5%BA%94/0x04%E5%BA%94%E6%80%A5%E5%93%8D%E5%BA%94%E6%8A%A5%E5%91%8A/DDoS%E5%83%B5%E5%B0%B8%E7%BD%91%E7%BB%9C%E6%95%B0%E6%8D%AE%E6%B3%84%E9%9C%B2/4.%E8%B4%A6%E5%8F%B7%E4%BF%A1%E6%81%AF%E4%B8%8A%E4%BC%A0%E5%85%AC%E7%BD%91%E8%87%B4%E5%86%85%E7%BD%9120%E5%A4%9A%E5%8F%B0%E6%9C%BA%E5%99%A8%E5%8F%97%E6%84%9F%E6%9F%93/index.html</link><pubDate>Sat, 20 Jun 2026 13:03:00 +0800</pubDate><guid>https://x7peeps.com/%E5%AE%89%E5%85%A8/%E5%BA%94%E6%80%A5%E5%93%8D%E5%BA%94/0x04%E5%BA%94%E6%80%A5%E5%93%8D%E5%BA%94%E6%8A%A5%E5%91%8A/DDoS%E5%83%B5%E5%B0%B8%E7%BD%91%E7%BB%9C%E6%95%B0%E6%8D%AE%E6%B3%84%E9%9C%B2/4.%E8%B4%A6%E5%8F%B7%E4%BF%A1%E6%81%AF%E4%B8%8A%E4%BC%A0%E5%85%AC%E7%BD%91%E8%87%B4%E5%86%85%E7%BD%9120%E5%A4%9A%E5%8F%B0%E6%9C%BA%E5%99%A8%E5%8F%97%E6%84%9F%E6%9F%93/index.html</guid><description>某运输公司员工将敏感信息上传GitHub，攻击者利用该账号登录VPN并结合Redis未授权漏洞攻破内网20余台服务器。</description></item></channel></rss>