Microsoft Warns Cybersecurity Threat Posing as Monero Miners Attempts to Extract Data

2020-12-3 00:02

A recently released Microsoft report has revealed that threat actors at the state level are now using coin miner techniques to cover their tracks or blend in. The report, which was published on Nov 30, highlights a recent attempt by state threat actor ‘BISMUTH,’ which leveraged Monero coin miners to infiltrate both government and private sector institutions in Vietnam and France.

While crypto-related cyber-crime activity is considered low risk, it appears that malicious attackers are now capitalizing on the nascent technology to advance their agendas. Per the Microsoft report, BISMUTH used the Monero coin miners as a decoy to distract security teams from tracking their real activity, which was data extraction. The report reads,

“The coin miners also allowed BISMUTH to hide its more nefarious activities behind threats that may be perceived to be less alarming because they’re ‘commodity' malware.”

BISMUTH also used the DLL replacing tactic to further reduce their conspicuousness, given that it takes long time periods to extract information from the compromised applications. The group, famous for blending in techniques, pulled a new one with crypto miners, although the report notes a consistency in their pattern.

“The use of coin miners by BISMUTH was unexpected, but it was consistent with the group’s longtime methods of blending in.”

The report recommends that organizations prioritize reducing surface attacks by elevating and inspecting common threats such as phishing and coin miner techniques in a more advanced manner.

The post Microsoft Warns Cybersecurity Threat Posing as Monero Miners Attempts to Extract Data first appeared on BitcoinExchangeGuide.

Similar to Notcoin - TapSwap on Solana Airdrops In 2024

origin »

Monero (XMR) на Currencies.ru

$ 139.49 (+0.35%)
Объем 24H $49.318m
Изменеия 24h: 0.88 %, 7d: 4.28 %
Cегодня L: $137.68 - H: $139.87
Капитализация $2.572b Rank 48
Цена в час новости $ 127.84 (9.11%)

threat monero miners microsoft coin report data

threat monero → Результатов: 27


Фото:

Cryptojacking worm uses Docker to infect over 2,000 systems to secretly mine Monero

Researchers have uncovered the first instance case of a cryptojacking worm that propagates via malicious Docker images, according to Palo Alto Networks’ threat intelligence team Unit 42. Dubbed “Graboid,” the worm infects compromised hosts with malware that covertly abuses the systems to mine privacy-focused cryptocurrency Monero before randomly spreading to the next target.

2019-10-16 16:03


Scary Monero Flaw Patched to Kill Crypto Exchange Theft Threat

Monero developers have revealed nine security flaws, and one of them can be exploited to steal XMR from cryptocurrency exchanges. Two critical Monero bugs discovered “By mining a specially crafted block, that still passes daemon verification an attacker can create a miner transaction that appears to the wallet to include sum of XMR picked by […] The post Scary Monero Flaw Patched to Kill Crypto Exchange Theft Threat appeared first on CCN Markets

2019-7-5 13:19


Фирма безопасности сообщает о новом вредоносном ПО Shellbot захватывающем серверы

В эксклюзивном докладе бостонской фирмы безопасности Threat Stack говорится об обнаружении нового измененного вида вредоносной программы Shellbot, которая взламывает компьютерные серверы для майнинга криптовалюты и устанавливает майнера Monero, принося хакерам около $300 в день.

2019-5-3 18:20


Вирус Shellbot теперь может отключать майнеров

Хакеры обновили вредоносную программу Shellbot и интегрировали в нее несколько новых опций. В отчете бостонской компании по кибербезопасности Threat Stack говорится, что данный вирус, который был обнаружен в 2005 году, теперь стал гораздо опаснее.

2019-5-2 09:33


За год количество случаев криптоджекинга выросло в 4,5 раза

За 2018 год количество случаев скрытого майнинга выросло в 4,5 раза. К такому выводу пришли исследователи компании IBM X-Force. По их данным, использование хакерами вирусов-вымогателей, напротив, снизилось на 45%.

2019-3-5 13:42


Хакеры используют для нелегального майнинга ПО от Агентства нацбезопасности США

Хакеры майнят monero, биткойн и другие криптовалюты, эксплуатируя ПО правительства США, которое появилась в широком доступе из-за утечки данных из NSA в 2017-ом году, сообщила группа Cyber Threat Alliance 19-го сентября.

2018-9-20 07:00