New Cryptojacking Malware Targeting Apache, Oracle, Redis Servers

Cryptojacking Malware

A financially-motivated threat actor notorious for its cryptojacking attacks has leveraged a revised version of their malware to target cloud infrastructures using vulnerabilities in web server technologies, according to new research.

Deployed by the China-based cybercrime group Rocke, the Pro-Ocean cryptojacking malware now comes with improved rootkit and worm capabilities, as well as harbors new evasion tactics to sidestep cybersecurity companies’ detection methods, Palo Alto Networks’ Unit 42 researchers said in a Thursday write-up.

password auditor

“Pro-Ocean uses known vulnerabilities to target cloud applications,” the researchers detailed. “In our analysis, we found Pro-Ocean targeting Apache ActiveMQ (CVE-2016-3088), Oracle WebLogic (CVE-2017-10271) and Redis (unsecure instances).”

“Once…


Source link

About coldfusion

Check Also

How Does Tesla's Autopilot Mode Work? | ColdFusion – MSN

How Does Tesla's Autopilot Mode Work? | ColdFusion – MSN

[unable to retrieve full-text content]How Does Tesla’s Autopilot Mode Work? | ColdFusion  MSN Source link

Leave a Reply

Your email address will not be published. Required fields are marked *