#Redis
All CosmicBytez Labs articles tagged #Redis, across news, security advisories, how-to guides, and projects.
- Security
CVE-2026-5759: FalkorDB Double-Free in RDB Decoder Enables Remote Code Execution
A crafted RDB replication stream triggers a double-free in FalkorDB's graph decoder, allowing DoS or RCE on unauthenticated instances.
- Security
CVE-2026-7826: FalkorDB Heap Out-of-Bounds Read in Buffer Serializer
A crafted replication stream exploits missing bounds checks in FalkorDB's buffer serializer, risking crashes and heap data disclosure.
- News
TeamPCP Linked To Redis Attacks Dating Back To 2020 And Later Supply Chain Campaign
New analysis traces the cloud threat actor TeamPCP to Redis cryptojacking campaigns active since 2020, revealing a six-year evolution from opportunistic...
- News
Kimi K3 AI Agents Discovered Redis Zero-Days and Built RCE Exploits in Under 90 Minutes
Autonomous AI agents powered by Moonshot AI's Kimi K3 model found 19 Redis zero-day vulnerabilities and produced working authenticated RCE...
- News
Autonomous AI Tool Finds 2-Year-Old RCE Flaw in Redis (CVE-2026-23479)
Redis has patched a use-after-free vulnerability in its blocking-client code that allows authenticated users to execute arbitrary OS commands on the database…
- News
36 Malicious npm Packages Exploited Redis, PostgreSQL to Deploy Persistent Implants
Cybersecurity researchers discovered 36 malicious npm packages disguised as Strapi CMS plugins that abused Redis and PostgreSQL connections to harvest...