Close Menu
Tech Nova Mindset – Empower Innovation and Forward Thinking

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Meta Ran Ads That Contained AI-Generated Child Sexual Abuse Imagery

    August 6, 2026

    The Download: Google’s AI shake-up and Meta’s rogue model

    August 6, 2026

    AI Hacks Are Bad. AI Worms and Viruses Will Be Worse

    August 6, 2026
    Facebook X (Twitter) Instagram
    Trending
    • Meta Ran Ads That Contained AI-Generated Child Sexual Abuse Imagery
    • The Download: Google’s AI shake-up and Meta’s rogue model
    • AI Hacks Are Bad. AI Worms and Viruses Will Be Worse
    • OpenAI’s Browser Could Be Hijacked to Spam Your WhatsApp Contacts
    • OpenAI Didn’t Notice Its AI Agents Using a Message Board to Plan Their Hacking Spree
    • IEEE Course on Using AI to Modernize Power Grids
    • The Most Dangerous AI Hacking Techniques Still Have Humans in the Loop
    • Puzzle Corner | MIT Technology Review
    Tech Nova Mindset – Empower Innovation and Forward Thinking
    • Home
    • Gadgets
    • Reviews
    • Tech News
    • Future Tech
    • AI & Robotics
    • How-To Guides
    • More
      • Cybersecurity
      • Startups & Innovation
    Tech Nova Mindset – Empower Innovation and Forward Thinking
    Home»Cybersecurity»Majority of Internet-Accessible REDCap Servers Outdated
    Cybersecurity

    Majority of Internet-Accessible REDCap Servers Outdated

    kirklandc008@gmail.comBy kirklandc008@gmail.comJune 18, 2026No Comments3 Mins Read
    Facebook Twitter Pinterest LinkedIn Tumblr Email
    Exploited Vulnerabilities
    Share
    Facebook Twitter LinkedIn Pinterest Email

    The majority of internet-accessible REDCap servers are running outdated software versions, making them prime targets for state-sponsored threat actors, according to internet intelligence firm Censys.

    A browser-based platform used for building and managing clinical research data in the medical field, REDCap is developed by Vanderbilt University and is used by academic, healthcare, and non-profit organizations.

    According to a June report by Google’s Threat Intelligence Group (GTIG), legacy REDCap servers are routinely targeted by a China-linked threat actor tracked as UNC6508 for cyberespionage purposes.

    Beginning in September 2023, as part of a campaign aimed at major medical, academic, and military research organizations in the US, the threat actor hacked web-facing REDCap servers and deployed custom malware for login credential harvesting.

    In one instance, the attackers deployed the InfiniteRed backdoor three months after the initial intrusion. One year after remaining undetected, the hacking group used the harvested credentials to access the organization’s internal network and exfiltrate data.

    GTIG could not confirm how UNC6508 compromised the REDCap server, but believes that the attackers probed vulnerable legacy versions on several systems, taking advantage of REDCap’s design that “allows administrators to continue running legacy software side-by-side with the current version.”

    Advertisement. Scroll to continue reading.

    According to a fresh Censys report, there are approximately 8,500 internet-exposed REDCap instances globally, but just over 1% of them run the latest version available. Nearly a third (30%) of the observed instances run REDCap version 16.0.17, followed by version 16.1.4 at 4.93% and version 16.0.15 at 3.34%.

    “It’s unclear from REDCap’s website when each of these versions was released, but the existence of 17.x.x releases suggests that 16.x.x versions may be somewhat outdated. 17.1.3 appears to be the latest version available, and only 1.18% of instances are running this patch version as of June 16, 2026,” the internet intelligence provider says.

    Internet-accessible REDCap servers are spread across 100 countries, with approximately 40% of them in the US. The UK (7.4%), Germany (4.8%), and Australia (3.9%) also expose numerous deployments to the web.

    Considering state-sponsored threat actors’ interest in REDCap servers, organizations are advised to create an inventory of their instances, ensure they run a patched version, and follow the vendor’s recommendations to keep the web server and database server separate, with the database secured behind a firewall.

    Related: Microsoft Teams Relay Servers Abused in DragonForce Ransomware Attack

    Related: Atlassian, Splunk Patch Critical Vulnerabilities

    Related: Atomic Arch Supply Chain Attack Hits 1,500 AUR Packages

    Related: No Exploits Required

    InternetAccessible Majority outdated REDCap servers
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    kirklandc008@gmail.com
    • Website

    Related Posts

    Ransomware in 2026: More groups, more victims, no slowdown

    July 26, 2026

    The 3 types of people who will excel in the AI agent era, according to tech leaders

    July 26, 2026

    Steam forum ClickFix attacks infect gamers with XMRig cryptominers

    July 26, 2026
    Leave A Reply Cancel Reply

    Top Posts

    Nothing CEO says phone prices are going to keep going up

    June 12, 20267 Views

    Google DeepMind Plans to Track AGI Progress With These 10 Traits of General Intelligence

    March 21, 20263 Views

    The AirPods 4 and Lego’s brick-ified Grogu are our favorite deals this week

    October 12, 20253 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Recent Posts
    • Meta Ran Ads That Contained AI-Generated Child Sexual Abuse Imagery
    • The Download: Google’s AI shake-up and Meta’s rogue model
    • AI Hacks Are Bad. AI Worms and Viruses Will Be Worse
    • OpenAI’s Browser Could Be Hijacked to Spam Your WhatsApp Contacts
    • OpenAI Didn’t Notice Its AI Agents Using a Message Board to Plan Their Hacking Spree

    Meta Ran Ads That Contained AI-Generated Child Sexual Abuse Imagery

    August 6, 2026

    The Download: Google’s AI shake-up and Meta’s rogue model

    August 6, 2026

    AI Hacks Are Bad. AI Worms and Viruses Will Be Worse

    August 6, 2026

    OpenAI’s Browser Could Be Hijacked to Spam Your WhatsApp Contacts

    August 6, 2026
    Facebook X (Twitter) Instagram Pinterest
    • About Us
    • Contact Us
    • Privacy Policy
    • Terms and Conditions
    • Disclaimer
    © 2026 TechNovaMindset. Designed by By Pro.

    Type above and press Enter to search. Press Esc to cancel.