ADVISORY UNAUTH-2026-0007
TYPE exposure-class
PRODUCT Ray
SEVERITY CRITICAL
Ray dashboard open to the internet
published 2026-08-05 · updated 2026-08-05
Why it matters
Your Ray dashboard and Jobs API answer anyone without a password. The Jobs API lets a stranger submit a job — and a Ray job is arbitrary code running on your cluster. This is unauthenticated remote code execution, and exposed Ray clusters are actively hijacked for cryptomining and data theft.
What a probe sees
GET :8265/api/jobs/ or /nodes answers cluster data without auth — unauthenticated job submission is open.
Internet-facing exposure — observable from the public internet with GET-only probes (the same probes unauth.dev sends).
no-auth-by-design
In the wild
No honeypot telemetry for this service yet (in_the_wild: null in the dataset). We do not invent numbers. The block appears when the honeypot has real data.
Fix it
References
- https://docs.ray.io/en/latest/ray-security/index.html
- https://www.oligo.security/blog/shadowray-attack-ai-workloads-actively-exploited-in-the-wild
Cite this record
unauth.dev advisory UNAUTH-2026-0007 — published 2026-08 · CC-BY 4.0
Canonical URL: https://unauth.dev/advisories/UNAUTH-2026-0007. This record is part of the unauth.dev advisory dataset, published under CC-BY 4.0: attribute "unauth.dev / Raúl Acedo". Schema: additive-only within v1; this id will never be renumbered or reused.