Tuesday, 26 August

Sunday, 24 August2025

Cybercriminals Exploit GeoServer RCE (CVE-2024-36401) to Hijack Redis Servers via PolarEdge Campaigns

Cybercriminals Exploit GeoServer RCE (CVE-2024-36401) to Hijack Redis Servers via PolarEdge Campaigns
Cybersecurity researchers report a wave of attacks exploiting the critical remote code execution flaw in OSGeo GeoServer GeoTools. Threat actors leveraged this vulnerability to infiltrate Redis servers, transforming them into IoT botnets, residential proxies, and crypto-mining infrastructure. These tactics profit stealthilyoften via legitimate SDKs or modified applicationsmaking detection harder. The campaigns, dubbed PolarEdge, mark cybercrimes expansion beyond traditional botnets.

Subscribe To Our Newsletter.

Full Name
Email