Dero miner zombies biting through Docker APIs to build a cryptojacking horde
4 Articles
4 Articles
Attack targets are unsafely published Docker APIs. A second malicious software ensures the spread of the miner over compromised containers.
Nginx is not just a web server. A Trojan misuses this name to infiltrate Docker containers unnoticed and automated. (Trojaner, Virus)
Dero miner spreads inside containerized Linux environments
Introduction Imagine a container zombie outbreak where a single infected container scans the internet for an exposed Docker API, and bites exploits it by creating new malicious containers and compromising the running ones, thus transforming them into new “zombies” that will mine for Dero currency and continue “biting” new victims. No command-and-control server is required for the delivery, just an exponentially growing number of victims that are…
Coverage Details
Bias Distribution
- There is no tracked Bias information for the sources covering this story.
To view factuality data please Upgrade to Premium