cryptocurrency mining

OAuth apps used in cryptocurrency mining, phishing campaigns, and BEC attacksOAuth apps used in cryptocurrency mining, phishing campaigns, and BEC attacks

OAuth apps used in cryptocurrency mining, phishing campaigns, and BEC attacks

Microsoft warns that threat actors are using OAuth applications cryptocurrency mining campaigns and phishing attacks. Threat actors are using OAuth…

1 year ago
Kinsing malware targets Kubernetes environments via misconfigured PostgreSQLKinsing malware targets Kubernetes environments via misconfigured PostgreSQL

Kinsing malware targets Kubernetes environments via misconfigured PostgreSQL

Kinsing cryptojacking operators are exploiting misconfigured and exposed PostgreSQL servers to access Kubernetes environments. Researchers at Microsoft Defender for Cloud observed…

2 years ago
KmsdBot, a new evasive bot for cryptomining activity and DDoS attacksKmsdBot, a new evasive bot for cryptomining activity and DDoS attacks

KmsdBot, a new evasive bot for cryptomining activity and DDoS attacks

Researchers spotted a new evasive malware, tracked as KmsdBot, that infects systems via an SSH connection that uses weak credentials.…

3 years ago
Cloud-Based Cryptocurrency mining attacks abuse GitHub Actions and Azure VMCloud-Based Cryptocurrency mining attacks abuse GitHub Actions and Azure VM

Cloud-Based Cryptocurrency mining attacks abuse GitHub Actions and Azure VM

Researchers investigated cloud-based cryptocurrency mining attacks targeting GitHub Actions and Azure VMs. Researchers from Trend Micro published a report that…

3 years ago
MyKings botnet operators already amassed at least $24 millionMyKings botnet operators already amassed at least $24 million

MyKings botnet operators already amassed at least $24 million

The MyKings botnet (aka Smominru or DarkCloud) is still alive and continues to spread, allowing its operators to make huge…

4 years ago
Cryptomining DreamBus botnet targets Linux serversCryptomining DreamBus botnet targets Linux servers

Cryptomining DreamBus botnet targets Linux servers

Zscaler’s research team recently spotted a Linux-based malware family, tracked as DreamBus botnet, targeting Linux servers. Researchers at Zscaler’s ThreatLabZ…

4 years ago
Google bans cryptocurrency mining apps from the official Play StoreGoogle bans cryptocurrency mining apps from the official Play Store

Google bans cryptocurrency mining apps from the official Play Store

Google has updated the Play Store Developer Policy page to ban mobile mining apps that mine cryptocurrencies using the computational…

7 years ago
Prowli Operation – Crooks already compromised over 40,000 servers and IoT DevicesProwli Operation – Crooks already compromised over 40,000 servers and IoT Devices

Prowli Operation – Crooks already compromised over 40,000 servers and IoT Devices

Crooks have infected over 40,000 web servers, modems, and other IoT devices with the Prowli malware as part of a…

7 years ago
Over 115,000 Drupal Sites still vulnerable to Drupalgeddon2, a gift to crooksOver 115,000 Drupal Sites still vulnerable to Drupalgeddon2, a gift to crooks

Over 115,000 Drupal Sites still vulnerable to Drupalgeddon2, a gift to crooks

Two months after the release of the security updates for the drupalgeddon2 flaw, experts continue to see vulnerable websites running…

7 years ago
Cryptocurrency mining operations target Windows Server, Redis and Apache Solr servers onlineCryptocurrency mining operations target Windows Server, Redis and Apache Solr servers online

Cryptocurrency mining operations target Windows Server, Redis and Apache Solr servers online

Researchers from the ISC SANS group and the Anti-DDoS company Imperva discovered two distinct campaigns targeting Windows Server, Redis and Apache…

7 years ago