Binance Square
LIVE
LIVE
Crypto PM
--216 views
Hackers have been exploiting a Windows tool to drop cryptocurrency-mining malware since November 2021, as revealed by an analysis from Cisco's Talos Intelligence. The attackers use Windows Advanced Installer, an application that assists developers in packaging software installers, to execute malicious scripts on infected machines. The software installers affected by the attack are primarily used for 3D modeling and graphic design, and most of them are written in French. This suggests that the victims are likely from various industries, including architecture, engineering, construction, manufacturing, and entertainment in French language-dominant countries. The attacks mainly target users in France and Switzerland, with a few infections reported in other countries such as the United States, Canada, Algeria, Sweden, Germany, Tunisia, Madagascar, Singapore, and Vietnam. The illicit crypto mining campaign identified by Talos involves deploying malicious PowerShell and Windows batch scripts to execute commands and establish a backdoor in the victim's machine. Once the backdoor is installed, the attacker executes additional threats, such as the Ethereum crypto-mining program PhoenixMiner and lolMiner, a multi-coin mining threat. This practice, known as cryptojacking, involves installing a crypto mining code on a device without the user's knowledge or permission to illegally mine cryptocurrencies. Signs that mining malware may be running on a machine include overheating and poorly performing devices. #ALERT

Hackers have been exploiting a Windows tool to drop cryptocurrency-mining malware since November 2021, as revealed by an analysis from Cisco's Talos Intelligence. The attackers use Windows Advanced Installer, an application that assists developers in packaging software installers, to execute malicious scripts on infected machines.

The software installers affected by the attack are primarily used for 3D modeling and graphic design, and most of them are written in French. This suggests that the victims are likely from various industries, including architecture, engineering, construction, manufacturing, and entertainment in French language-dominant countries. The attacks mainly target users in France and Switzerland, with a few infections reported in other countries such as the United States, Canada, Algeria, Sweden, Germany, Tunisia, Madagascar, Singapore, and Vietnam.

The illicit crypto mining campaign identified by Talos involves deploying malicious PowerShell and Windows batch scripts to execute commands and establish a backdoor in the victim's machine. Once the backdoor is installed, the attacker executes additional threats, such as the Ethereum crypto-mining program PhoenixMiner and lolMiner, a multi-coin mining threat. This practice, known as cryptojacking, involves installing a crypto mining code on a device without the user's knowledge or permission to illegally mine cryptocurrencies. Signs that mining malware may be running on a machine include overheating and poorly performing devices.

#ALERT

Felelősségkorlátozó nyilatkozat: Harmadik felek véleményét tartalmazza. Nem minősül pénzügyi tanácsnak. Lásd a Feltételeket.
0
Releváns tartalomkészítő
LIVE
@CryptoPM

Továbbiak felfedezése a tartalomkészítőtől

Crypto News Weekly Recap 📰 2nd April – 9th April ▫️ Crypto investment products witness record year-to-date inflows of $13.8 billion. ▫️ Average crypto portfolio increases by $2,804 in 2024, according to CoinLedger. ▫️ Bitcoin's next halving approaches, just two weeks away. ▫️ US vs Roman Storm: amicus briefs from Blockchain Association, Coin Center & DeFi Education Fund. ▫️ SEC Commissioner Peirce emphasizes improving communication between public & SEC. ▫️ Bank of England & FCA consult on digital securities sandbox, seeking feedback by May 29. ▫️ South Korea to tighten crypto exchange listings with upcoming guidelines. ▫️ Sony Bank to conduct stablecoin trial on Polygon. ▫️ US PayPal customers to use stablecoin for international payments. ▫️ HashKey launches global crypto exchange after obtaining Bermuda license. ▫️ Geth DoS vulnerability disclosed, fixed in v1.13.13. ▫️ Google sues developers for placing 87 fraudulent crypto apps on Google Play store. ▫️ Project Agorá: BIS & 7 central banks explore tokenization of cross-border payments. ▫️ Vitalik outlines next steps in the Purge, precompiles, history (via EIP4444), log reform & moving to SSZ. ▫️ Uniswap achieves $2 trillion in trading volume for the first time. ▫️ MakerDAO proposes allocating $600M of DAI to USDe and sUSDe. ▫️ SushiSwap governance proposal suggests shifting DAO treasury assets to new Sushi Labs vault. ▫️ Frax tokens to be natively issued on Noble, expanding into Cosmos ecosystem. ▫️ Ethena Labs adds Bitcoin as USDe backing asset. ▫️ Celestia brings Blobstream solution to Arbitrum Orbit chains. ▫️ Synthetix v3 goes live on Base, using USDC as collateral. ▫️ Gitcoin Grants 20 applications open until April 16. ▫️ Ethena's 'synthetic dollar' surpasses $2 billion supply within two months of public launch. ▫️ Agora, a stablecoin issuer, raises $12M in seed funding. ▫️ Raiinmaker, a web3 AI firm, secures $7.5M in seed funding. #CryptoNews #CryptoNews🔒📰🚫
--
Oldaltérkép
Cookie Preferences
Platform szerződési feltételei