Suspicious connections from Plex to the internet

Server Version#: 1.18.4.2171

Any idea why a Plex server would initiate an outbound SSH connection over 443 to pubsub01.spop.sjc.plex.bz ??

Screenshot: https://imgur.com/a/10UQ9bN

SSH over a nonstandard port screams data exfiltration. Why not just HTTP/TLS ?

Edit: reading the linked post, this is not the same question. Different address & protocols

Using ssh is terrible, how do I know there isn’t a reverse ssh tunnel scenario here?

This topic was automatically closed 90 days after the last reply. New replies are no longer allowed.