redis / docker-library-redis

Docker Official Image packaging for Redis
http://redis.io
BSD 3-Clause "New" or "Revised" License
1.11k stars 560 forks source link

where are the backup{1,2,3,4} come from #378

Closed cn00 closed 7 months ago

cn00 commented 9 months ago

WeChat8f177cfa660e68e4c9c46d9e0cdb6a0d 45.83.123.29--cleanfda--init.sh.txt

I use the latest image sha256:7c4b517da47d331a47827390b9e8eb1be7ee68133af9c332660001b4d447828d

LaurentGoderre commented 9 months ago

I am not finding a matching image with that digest. What tag did you use?

yosifkit commented 9 months ago

If you or your application did not create those values, then that looks like an external malicious actor. See also the Security section from the Docker Hub docs.

TL;DR: if you expose your redis container instance to the internet, it is trivial to "hack" it.