Hi All
Thousands of publicly exposed Ray servers compromised as a result of Shadow Vulnerability
TL;DR
The Oligo research team has recently discovered an active attack campaign targeting a vulnerability in Ray, a widely used open-source AI framework. Thousands of companies and servers running AI infrastructure are exposed to the attack through a critical vulnerability that is under dispute and thus has no patch. This vulnerability allows attackers to take over the companies' computing power and leak sensitive data. This flaw has been under active exploitation for the last 7 months, affecting sectors like education, cryptocurrency, biopharma and more. All organisations using Ray are advised to review their environments to ensure they are not exposed and to analyze any suspicious activity.
https://www.oligo.security/blog/shadowray-attack-ai-workloads-actively-exploited-in-the-wild
Regards
Caute_Cautim