Site icon TheCyberThrone

Huawei Cloud Cryptomined

Advertisements

Huawei Cloud, are now targeted by some new variant of a past crypto-mining malware. This is Linux-based and its initial version started its activities in 2020 when the victims were Docker containers.This new campaign brings also evolution and enhanced capabilities.

The Linux crypto-mining malware has new features:

Researchers have also found what vulnerabilities were scanned during the attack. Therefore, hackers looked for weak SSH passwords, the Oracle WebLogic Server flaw dubbed  CVE-2020-14882,weak passwords or unauthorized access related to Redis, Postgre SQL, or MongoDB, and weak passwords of SQL Server and of FTP. Linux cybersecurity attacks usually follow a pattern of crypto miners’ payload deployment.

Detect and stop hidden cyber threats and be a step ahead of hackers with our Threat Prevention Tool. This combined with Next-Gen Antivirus will identify even undetectable malware.

Exit mobile version