⤷ Title: Exposed JDWP Debug Ports Under Attack: Cryptominers Infiltrating Java Apps in Hours
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 08 Jul 2025 02:24:42 +0000
════════════════════════
⌗ Tags: #Malware #Cryptojacking #cryptomining #cybersecurity #HoneyPot #Java Debug Wire Protocol #JDWP #malware #RCE #remote code execution #TeamCity #Wiz Research Team
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 08 Jul 2025 02:24:42 +0000
════════════════════════
⌗ Tags: #Malware #Cryptojacking #cryptomining #cybersecurity #HoneyPot #Java Debug Wire Protocol #JDWP #malware #RCE #remote code execution #TeamCity #Wiz Research Team
Penetration Testing Tools
Exposed JDWP Debug Ports Under Attack: Cryptominers Infiltrating Java Apps in Hours
Wiz Research Team uncovers rapid exploitation of exposed JDWP interfaces, deploying XMRig cryptominers in TeamCity and other Java environments within hours of exposure.
⤷ Title: Silent Scourge: Over 3,500 Websites Infected by New Covert Browser Cryptominer
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 23:37:46 +0000
════════════════════════
⌗ Tags: #Malware #Browser Hijacking #Coinhive #cryptomining #cybersecurity #JavaScript #malware #supply chain attack #web security
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 23:37:46 +0000
════════════════════════
⌗ Tags: #Malware #Browser Hijacking #Coinhive #cryptomining #cybersecurity #JavaScript #malware #supply chain attack #web security
Penetration Testing Tools
Silent Scourge: Over 3,500 Websites Infected by New Covert Browser Cryptominer
A new covert cryptomining campaign has compromised over 3,500 websites, silently hijacking visitors' browser resources to mine crypto with virtually no detection.
⤷ Title: Cloud Cryptominers Evolve: Koske & Soco404 Use Stealthy Tactics, AI-Generated Malware & Image Payloads
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 29 Jul 2025 01:05:57 +0000
════════════════════════
⌗ Tags: #Malware #cloud security #cryptomining #cybersecurity #JupyterLab #Koske #Linux #malware #PostgreSQL #Soco404 #windows
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 29 Jul 2025 01:05:57 +0000
════════════════════════
⌗ Tags: #Malware #cloud security #cryptomining #cybersecurity #JupyterLab #Koske #Linux #malware #PostgreSQL #Soco404 #windows
Penetration Testing Tools
Cloud Cryptominers Evolve: Koske & Soco404 Use Stealthy Tactics, AI-Generated Malware & Image Payloads
New cryptomining campaigns by Soco404 and Koske exploit cloud misconfigurations in PostgreSQL and JupyterLab, deploying stealthy, AI-generated malware hidden in images.
⤷ Title: The USB Threat Is Back: New Multi-Stage Cryptomining Attack Spreads via Infected Drives
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 20 Aug 2025 00:03:51 +0000
════════════════════════
⌗ Tags: #Malware #cryptomining #CyberProof #cybersecurity #DLL Search Order Hijacking #Universal Mining #USB malware #XMRig
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 20 Aug 2025 00:03:51 +0000
════════════════════════
⌗ Tags: #Malware #cryptomining #CyberProof #cybersecurity #DLL Search Order Hijacking #Universal Mining #USB malware #XMRig
Daily CyberSecurity
The USB Threat Is Back: New Multi-Stage Cryptomining Attack Spreads via Infected Drives
A new report reveals a multi-stage cryptomining attack delivered via infected USB drives, a tactic that leverages DLL hijacking to bypass security.
⤷ Title: Mandiant Uncovers USB-Borne Malware Campaign Deploying Cryptocurrency Miners
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 21 Aug 2025 00:11:52 +0000
════════════════════════
⌗ Tags: #Malware #cryptomining #cybersecurity #DLL hijacking #Mandiant #PUMPBENCH #USB malware #XMRig
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 21 Aug 2025 00:11:52 +0000
════════════════════════
⌗ Tags: #Malware #cryptomining #cybersecurity #DLL hijacking #Mandiant #PUMPBENCH #USB malware #XMRig
Daily CyberSecurity
Mandiant Uncovers USB-Borne Malware Campaign Deploying Cryptocurrency Miners
A new Mandiant report reveals a multi-stage USB malware campaign that uses DLL side-loading and stealthy loaders to deploy backdoors and coinminers.
⤷ Title: New Malware Uses Windows Character Map for Cryptomining
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Thu, 04 Sep 2025 13:16:05 +0000
════════════════════════
⌗ Tags: #Security #Cryptocurrency #Malware #Autolt #Cryptojacking #Cryptominer #Cryptomining #Cyber Attack #Darktrace #NBMiner #PowerShell #Windows
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Thu, 04 Sep 2025 13:16:05 +0000
════════════════════════
⌗ Tags: #Security #Cryptocurrency #Malware #Autolt #Cryptojacking #Cryptominer #Cryptomining #Cyber Attack #Darktrace #NBMiner #PowerShell #Windows
Hackread
New Malware Uses Windows Character Map for Cryptomining
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
⤷ Title: New Docker Malware Strain Spotted Blocking Rivals on Exposed APIs
════════════════════════
𐀪 Author: Waqas
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 12:04:37 +0000
════════════════════════
⌗ Tags: #Security #Malware #Akamai #API #Botnet #Cryptomining #Cyber Attack #Cybersecurity #Docker #trend micro
════════════════════════
𐀪 Author: Waqas
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 12:04:37 +0000
════════════════════════
⌗ Tags: #Security #Malware #Akamai #API #Botnet #Cryptomining #Cyber Attack #Cybersecurity #Docker #trend micro
Hackread
New Docker Malware Strain Spotted Blocking Rivals on Exposed APIs
Akamai finds new Docker malware blocking rivals on exposed APIs, replacing cryptominers with tools that hint at early botnet development.
⤷ Title: Beyond Cryptominers: A New Malware Strain Is Hijacking Exposed Docker APIs
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 10 Sep 2025 00:05:45 +0000
════════════════════════
⌗ Tags: #Malware #Akamai #botnet #cryptomining #cybersecurity #Docker malware #exposed APIs #malware evolution #Remote Access
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 10 Sep 2025 00:05:45 +0000
════════════════════════
⌗ Tags: #Malware #Akamai #botnet #cryptomining #cybersecurity #Docker malware #exposed APIs #malware evolution #Remote Access
Daily CyberSecurity
Beyond Cryptominers: A New Malware Strain Is Hijacking Exposed Docker APIs
A new malware strain is targeting exposed Docker APIs, evolving from a cryptominer into a stealthy botnet that blocks ports to "own" a victim's system for exclusive use.
⤷ Title: Luno: A “Self-Healing” Linux Botnet That Mines Crypto and Launches DDoS Attacks
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 11 Sep 2025 00:00:47 +0000
════════════════════════
⌗ Tags: #Malware #botnet #cryptomining #cybersecurity #ddos #Linux #Luno #malware
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 11 Sep 2025 00:00:47 +0000
════════════════════════
⌗ Tags: #Malware #botnet #cryptomining #cybersecurity #ddos #Linux #Luno #malware
Daily CyberSecurity
Luno: A "Self-Healing" Linux Botnet That Mines Crypto and Launches DDoS Attacks
A new Linux botnet, Luno, combines cryptomining and modular DDoS attacks. It's a "self-healing" threat that targets gaming platforms and disguises itself as legitimate processes.
⤷ Title: Morte Botnet Unveiled: A Rapidly Growing Loader-as-a-Service Campaign Exploiting Routers and Enterprise Apps
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 29 Sep 2025 00:05:46 +0000
════════════════════════
⌗ Tags: #Malware #botnet #CloudSEK #Command Injection #cryptomining #Enterprise Security #IOT #Morte Botnet #SOHO Routers
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 29 Sep 2025 00:05:46 +0000
════════════════════════
⌗ Tags: #Malware #botnet #CloudSEK #Command Injection #cryptomining #Enterprise Security #IOT #Morte Botnet #SOHO Routers
Daily CyberSecurity
Morte Botnet Unveiled: A Rapidly Growing Loader-as-a-Service Campaign Exploiting Routers and Enterprise Apps
A new Morte botnet campaign is exploiting command injection flaws to hijack SOHO routers and enterprise apps. The Loader-as-a-Service model saw a 230% spike this summer.
⤷ Title: Morte Botnet Unveiled: A Loader-as-a-Service Campaign Hijacking Routers and IoT Devices
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 29 Sep 2025 04:05:50 +0000
════════════════════════
⌗ Tags: #Malware #BOTNET #CloudSEK #Command Injection #cryptomining #DDoS #IoT #Morte Botnet #SOHO Routers
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 29 Sep 2025 04:05:50 +0000
════════════════════════
⌗ Tags: #Malware #BOTNET #CloudSEK #Command Injection #cryptomining #DDoS #IoT #Morte Botnet #SOHO Routers
Penetration Testing Tools
Morte Botnet Unveiled: A Loader-as-a-Service Campaign Hijacking Routers and IoT Devices
The Morte botnet campaign is exploiting command injection flaws to hijack SOHO routers and IoT devices for mining and Mirai-style attacks. The operation grew by 230% this summer.
⤷ Title: Hackers Hijack Corporate XWiki Servers for Crypto Mining
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Wed, 29 Oct 2025 16:17:42 +0000
════════════════════════
⌗ Tags: #Security #Crypto #Cryptomining #Cybersecurity #Malware #Vulnerability #XWiki
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Wed, 29 Oct 2025 16:17:42 +0000
════════════════════════
⌗ Tags: #Security #Crypto #Cryptomining #Cybersecurity #Malware #Vulnerability #XWiki
Hackread
Hackers Hijack Corporate XWiki Servers for Crypto Mining
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
⤷ Title: Tangerine Turkey Cryptomining Worm Spreads Via USB Drives, Hides Payloads with VBScript and LOLBins
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 03 Nov 2025 00:04:57 +0000
════════════════════════
⌗ Tags: #Malware #cryptomining #defense evasion #LOLBins #persistence #Tangerine Turkey #USB malware #VBScript Worm #XMRig
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 03 Nov 2025 00:04:57 +0000
════════════════════════
⌗ Tags: #Malware #cryptomining #defense evasion #LOLBins #persistence #Tangerine Turkey #USB malware #VBScript Worm #XMRig
Daily CyberSecurity
Tangerine Turkey Cryptomining Worm Spreads Via USB Drives, Hides Payloads with VBScript and LOLBins
Cybereason exposed Tangerine Turkey, a VBScript worm that spreads via USB drives. It uses LOLBins (printui.exe) and Windows Defender exclusions to deploy the XMRig cryptominer for profit.
⤷ Title: AI-Generated Malware Attacks 230,000 Exposed Ray AI Clusters in Massive ShadowRay 2.0 Botnet Campaign
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 19 Nov 2025 03:08:39 +0000
════════════════════════
⌗ Tags: #Malware #Vulnerability Report #AI_generated malware #botnet #cryptomining #CVE_2023_48022 #Oligo Security #Ray AI #ShadowRay 2.0
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 19 Nov 2025 03:08:39 +0000
════════════════════════
⌗ Tags: #Malware #Vulnerability Report #AI_generated malware #botnet #cryptomining #CVE_2023_48022 #Oligo Security #Ray AI #ShadowRay 2.0
Daily CyberSecurity
AI-Generated Malware Attacks 230,000 Exposed Ray AI Clusters in Massive ShadowRay 2.0 Botnet Campaign
Oligo exposed ShadowRay 2.0, a massive, evolving campaign using AI-generated malware to turn 230K exposed Ray AI clusters into a self-propagating cryptomining and DDoS botnet.
⤷ Title: Stealth Cryptominer Uses USB LNK and DLL Side-Loading to Deploy “Smart Mining” Evasion
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 05 Dec 2025 02:39:33 +0000
════════════════════════
⌗ Tags: #Malware #ASEC #CoinMiner #cryptomining #DLL side_loading #PrintMiner #Smart Mining #USB malware #XMRig
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 05 Dec 2025 02:39:33 +0000
════════════════════════
⌗ Tags: #Malware #ASEC #CoinMiner #cryptomining #DLL side_loading #PrintMiner #Smart Mining #USB malware #XMRig
Daily CyberSecurity
Stealth Cryptominer Uses USB LNK and DLL Side-Loading to Deploy "Smart Mining" Evasion
ASEC exposed PrintMiner, a Monero cryptominer spreading via USB LNK files. It uses DLL Side-Loading (printui.exe) and "Smart Mining" to suspend activity when games or Task Manager are opened.
⤷ Title: React Under Siege: Two IPs Drive 56% of Critical CVE-2025-55182 Attacks
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 04 Feb 2026 02:12:30 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #cryptomining #CVE_2025_55182 #DevSecOps #GreyNoise #Patch Alert #React #React Server Components #Remote Code Execution #reverse shell #Web Security
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 04 Feb 2026 02:12:30 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #cryptomining #CVE_2025_55182 #DevSecOps #GreyNoise #Patch Alert #React #React Server Components #Remote Code Execution #reverse shell #Web Security
Daily CyberSecurity
React Under Siege: Two IPs Drive 56% of Critical CVE-2025-55182 Attacks
Critical React flaw CVE-2025-55182 (CVSS 10.0) under mass exploitation. Two IPs drive 56% of attacks deploying miners & shells. Upgrade to v19.0.1+ now.
⤷ Title: Study Finds ROME AI Agent Attempted Cryptomining Without Instructions
════════════════════════
𐀪 Author: Waqas
════════════════════════
ⴵ Time: Tue, 10 Mar 2026 14:10:08 +0000
════════════════════════
⌗ Tags: #Artificial Intelligence #Machine Learning #Security #Agentic AI #AI #Ai Chatbot #arXiv #Cryptomining #Cybersecurity #Machine Le #ROME AI
════════════════════════
𐀪 Author: Waqas
════════════════════════
ⴵ Time: Tue, 10 Mar 2026 14:10:08 +0000
════════════════════════
⌗ Tags: #Artificial Intelligence #Machine Learning #Security #Agentic AI #AI #Ai Chatbot #arXiv #Cryptomining #Cybersecurity #Machine Le #ROME AI
Hackread
Study Finds ROME AI Agent Attempted Cryptomining Without Instructions
A study found the ROME AI agent attempted cryptocurrency mining without instructions during training, raising questions about monitoring AI systems.