⤷ Title: Koske Malware: AI-Generated Cryptojacker Hides in Panda Images to Infect Linux Servers
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sun, 27 Jul 2025 00:21:37 +0000
════════════════════════
⌗ Tags: #Malware #AI Malware #Cryptojacking #cybersecurity #JupyterLab #Koske Malware #Linux #Polyglot Files #rootkit #threat intelligence
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sun, 27 Jul 2025 00:21:37 +0000
════════════════════════
⌗ Tags: #Malware #AI Malware #Cryptojacking #cybersecurity #JupyterLab #Koske Malware #Linux #Polyglot Files #rootkit #threat intelligence
Daily CyberSecurity
Koske Malware: AI-Generated Cryptojacker Hides in Panda Images to Infect Linux Servers
Aqua Security's Nautilus team discovered Koske, an advanced Linux cryptojacker likely crafted by AI, hiding in panda images and using rootkits for stealthy operations.
⤷ Title: Koske Malware: AI-Generated Cryptojacker Hides in Panda Images, Targets Linux Servers with Rootkit Stealth
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 28 Jul 2025 01:00:02 +0000
════════════════════════
⌗ Tags: #Malware #AI Malware #Cryptojacking #cybersecurity #JupyterLab #Koske Malware #Linux #Polyglot Files #rootkit #threat intelligence
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 28 Jul 2025 01:00:02 +0000
════════════════════════
⌗ Tags: #Malware #AI Malware #Cryptojacking #cybersecurity #JupyterLab #Koske Malware #Linux #Polyglot Files #rootkit #threat intelligence
Penetration Testing Tools
Koske Malware: AI-Generated Cryptojacker Hides in Panda Images, Targets Linux Servers with Rootkit Stealth
AquaSec uncovers Koske, a new cryptojacking malware potentially AI-generated, hiding in innocent-looking images to silently infect Linux servers and evade detection with rootkit stealth.
⤷ Title: New Android Malware Impersonates Indian Banks to Steal Data & Secretly Mine Monero
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 05 Aug 2025 00:40:07 +0000
════════════════════════
⌗ Tags: #Malware #Android Malware #Axis Bank #Banking Trojan #Cryptojacking #India #IndusInd Bank #Monero #phishing #SBI Card #XMRig
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 05 Aug 2025 00:40:07 +0000
════════════════════════
⌗ Tags: #Malware #Android Malware #Axis Bank #Banking Trojan #Cryptojacking #India #IndusInd Bank #Monero #phishing #SBI Card #XMRig
Daily CyberSecurity
New Android Malware Impersonates Indian Banks to Steal Data & Secretly Mine Monero
McAfee uncovers a new Android malware campaign targeting Indian users. The malware impersonates major banks to steal financial data and silently mines Monero in the background.
⤷ Title: New Malware Uses Windows Character Map for Cryptomining
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Thu, 04 Sep 2025 13:16:05 +0000
════════════════════════
⌗ Tags: #Security #Cryptocurrency #Malware #Autolt #Cryptojacking #Cryptominer #Cryptomining #Cyber Attack #Darktrace #NBMiner #PowerShell #Windows
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Thu, 04 Sep 2025 13:16:05 +0000
════════════════════════
⌗ Tags: #Security #Cryptocurrency #Malware #Autolt #Cryptojacking #Cryptominer #Cryptomining #Cyber Attack #Darktrace #NBMiner #PowerShell #Windows
Hackread
New Malware Uses Windows Character Map for Cryptomining
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
⤷ Title: How Hackers Hijacked a Local Café to Mine Crypto — And Nobody Noticed for Weeks
════════════════════════
𐀪 Author: Noel
════════════════════════
ⴵ Time: Thu, 11 Sep 2025 19:34:18 GMT
════════════════════════
⌗ Tags: #cybersecurity #malware #cryptojacking #xmrig #small_business
════════════════════════
𐀪 Author: Noel
════════════════════════
ⴵ Time: Thu, 11 Sep 2025 19:34:18 GMT
════════════════════════
⌗ Tags: #cybersecurity #malware #cryptojacking #xmrig #small_business
Medium
How Hackers Hijacked a Local Café to Mine Crypto — And Nobody Noticed for Weeks
“Our sales POS froze for 17 seconds. When it came back online, our electricity bill was 4x higher the next month.”
⤷ Title: TOR-based cryptojacking attack spreads through misconfigured Docker APIs
════════════════════════
𐀪 Author: SCtoCS
════════════════════════
ⴵ Time: Fri, 19 Sep 2025 15:38:30 GMT
════════════════════════
⌗ Tags: #cryptojacking #cryptojacking_attack #attack #cybersecurity
════════════════════════
𐀪 Author: SCtoCS
════════════════════════
ⴵ Time: Fri, 19 Sep 2025 15:38:30 GMT
════════════════════════
⌗ Tags: #cryptojacking #cryptojacking_attack #attack #cybersecurity
Medium
TOR-based cryptojacking attack spreads through misconfigured Docker APIs
The TOR-based Cryptojacking Attack has begun spreading through misconfigured Docker APIs. Attackers use the TOR network to install the…
⤷ Title: Fake Ukraine Police Notices Spread New Amatera Stealer and PureMiner
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Fri, 26 Sep 2025 09:44:53 +0000
════════════════════════
⌗ Tags: #Security #Malware #Phishing Scam #Amatera Stealer #Crypto #Cryptojacking #Cybersecurity #Phishing #Police #PureMiner #SVG #Ukraine
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Fri, 26 Sep 2025 09:44:53 +0000
════════════════════════
⌗ Tags: #Security #Malware #Phishing Scam #Amatera Stealer #Crypto #Cryptojacking #Cybersecurity #Phishing #Police #PureMiner #SVG #Ukraine
Hackread
Fake Ukraine Police Notices Spread New Amatera Stealer and PureMiner
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
⤷ Title: Fake Ukraine Police Notices Spread New Amatera Stealer and PureMiner
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Fri, 26 Sep 2025 14:25:14 +0000
════════════════════════
⌗ Tags: #Security #Malware #Phishing Scam #Amatera Stealer #Crypto #Cryptojacking #Cybersecurity #Phishing #Police #PureMiner #SVG #Ukraine
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Fri, 26 Sep 2025 14:25:14 +0000
════════════════════════
⌗ Tags: #Security #Malware #Phishing Scam #Amatera Stealer #Crypto #Cryptojacking #Cybersecurity #Phishing #Police #PureMiner #SVG #Ukraine
Hackread
Fake Ukraine Police Notices Spread New Amatera Stealer and PureMiner
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
⤷ Title: New Phishing Campaign Impersonates Ukrainian Police to Deliver Amatera Stealer and PureMiner
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 30 Sep 2025 03:38:28 +0000
════════════════════════
⌗ Tags: #Malware #Amatera Stealer #Cryptojacking #FortiGuard #Infostealer #malware #phishing #PureMiner #SVG #Ukraine
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 30 Sep 2025 03:38:28 +0000
════════════════════════
⌗ Tags: #Malware #Amatera Stealer #Cryptojacking #FortiGuard #Infostealer #malware #phishing #PureMiner #SVG #Ukraine
Penetration Testing Tools
New Phishing Campaign Impersonates Ukrainian Police to Deliver Amatera Stealer and PureMiner
A phishing campaign is impersonating Ukrainian police via malicious SVG files to deliver Amatera Stealer and PureMiner, a stealthy cryptominer, to victims.
⤷ Title: Astaroth Malware Uses Steganography in GitHub Images for Covert C2 Backup and Brazilian Bank Theft
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 14 Oct 2025 00:06:56 +0000
════════════════════════
⌗ Tags: #Malware #Astaroth #Banking Trojan #Brazil #Cryptojacking #Github C2 #malware #mcafee #steganography
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 14 Oct 2025 00:06:56 +0000
════════════════════════
⌗ Tags: #Malware #Astaroth #Banking Trojan #Brazil #Cryptojacking #Github C2 #malware #mcafee #steganography
Daily CyberSecurity
Astaroth Malware Uses Steganography in GitHub Images for Covert C2 Backup and Brazilian Bank Theft
McAfee uncovered the Astaroth banking Trojan using GitHub for C2 backup, hiding encrypted configuration data via steganography in images to target Brazilian financial and crypto users.
⤷ Title: TigerJack Hackers Use Malicious VSCode Extensions for Real-Time Code Theft and Cryptojacking on OpenVSX
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 16 Oct 2025 08:22:40 +0000
════════════════════════
⌗ Tags: #Malware #Backdoor #Code Theft #CoinIMP #Cryptojacking #Extension Supply Chain #OpenVSX #TigerJack #VSCode
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 16 Oct 2025 08:22:40 +0000
════════════════════════
⌗ Tags: #Malware #Backdoor #Code Theft #CoinIMP #Cryptojacking #Extension Supply Chain #OpenVSX #TigerJack #VSCode
Penetration Testing Tools
TigerJack Hackers Use Malicious VSCode Extensions for Real-Time Code Theft and Cryptojacking on OpenVSX
The TigerJack group is attacking developers via malicious VSCode extensions on OpenVSX. Plugins secretly steal C++ source code in real-time and deploy the CoinIMP cryptojacker.
⤷ Title: North Korea’s Famous Chollima APT Uses Trojanized Node.js App to Deploy OtterCookie RAT for Crypto Theft
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 17 Oct 2025 00:30:20 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #BeaverTail #Cryptojacking #Espionage #Famous Chollima #Node.js #North Korea APT #OtterCookie #Supply Chain
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 17 Oct 2025 00:30:20 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #BeaverTail #Cryptojacking #Espionage #Famous Chollima #Node.js #North Korea APT #OtterCookie #Supply Chain
Daily CyberSecurity
North Korea’s Famous Chollima APT Uses Trojanized Node.js App to Deploy OtterCookie RAT for Crypto Theft
Cisco Talos exposed Famous Chollima using fake job offers and a trojanized Node.js app (Chessfi) to infect developers. The OtterCookie RAT steals crypto wallets, credentials, and source code.
⤷ Title: GhostGrab Android Malware Combines Covert Monero Mining with Financial Credential Theft
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 28 Oct 2025 00:11:57 +0000
════════════════════════
⌗ Tags: #Malware #Android Malware #Banking Trojan #Cryptojacking #Firebase C2 #GhostGrab #Hybrid Threat #Monero mining #OTP Interception
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 28 Oct 2025 00:11:57 +0000
════════════════════════
⌗ Tags: #Malware #Android Malware #Banking Trojan #Cryptojacking #Firebase C2 #GhostGrab #Hybrid Threat #Monero mining #OTP Interception
Daily CyberSecurity
GhostGrab Android Malware Combines Covert Monero Mining with Financial Credential Theft
GhostGrab is a hybrid Android malware that steals banking credentials and OTPs via phishing WebView overlays while secretly running a Monero miner in the background to monetize the victim's device.
⤷ Title: Understanding Cryptojacking — How Hackers Steal Your Computing Power
════════════════════════
𐀪 Author: Afnan K
════════════════════════
ⴵ Time: Thu, 30 Oct 2025 19:11:59 GMT
════════════════════════
⌗ Tags: #cryptocurrency #cryptojacking #mining #malware #hacking
════════════════════════
𐀪 Author: Afnan K
════════════════════════
ⴵ Time: Thu, 30 Oct 2025 19:11:59 GMT
════════════════════════
⌗ Tags: #cryptocurrency #cryptojacking #mining #malware #hacking
Medium
Understanding Cryptojacking — How Hackers Steal Your Computing Power
Have you ever thought about why hackers needs to infect malware to your computer even though there is nothing could be done, why would…
⤷ Title: Understanding Cryptojacking — How Hackers Steal Your Computing Power
════════════════════════
𐀪 Author: Kerala Blockchain Academy
════════════════════════
ⴵ Time: Wed, 19 Nov 2025 04:25:25 GMT
════════════════════════
⌗ Tags: #mining #cryptocurrency #malware #hacking #cryptojacking
════════════════════════
𐀪 Author: Kerala Blockchain Academy
════════════════════════
ⴵ Time: Wed, 19 Nov 2025 04:25:25 GMT
════════════════════════
⌗ Tags: #mining #cryptocurrency #malware #hacking #cryptojacking
Medium
Understanding Cryptojacking — How Hackers Steal Your Computing Power
Afnan K, Blockchain Student, Digital University Kerala
⤷ Title: ShadowRay 2.0: AI Orchestration Framework Ray Hacked for Autonomous Cryptojacking
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 21 Nov 2025 10:14:07 +0000
════════════════════════
⌗ Tags: #Malware #Vulnerability #AI Cluster #Cryptojacking #CVE_2023_48022 #cybersecurity #GPU Mining #misconfiguration #Ray Framework #RCE #ShadowRay
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 21 Nov 2025 10:14:07 +0000
════════════════════════
⌗ Tags: #Malware #Vulnerability #AI Cluster #Cryptojacking #CVE_2023_48022 #cybersecurity #GPU Mining #misconfiguration #Ray Framework #RCE #ShadowRay
Penetration Testing Tools
ShadowRay 2.0: AI Orchestration Framework Ray Hacked for Autonomous Cryptojacking
The ShadowRay 2.0 campaign exploits the unauthenticated Ray Jobs API (CVE-2023-48022) in over 200,000 exposed instances to deploy a self-propagating cryptomining botnet.
⤷ Title: Locked Out of the Cloud: Hackers Use AWS Termination Protection to Hijack ECS for Unstoppable Crypto Mining
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 00:42:31 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Amazon ECS #Amazon GuardDuty #AWS #AWS Lambda #Cloud Security #Cryptojacking #EC2 #IAM Security #persistence #Termination Protection
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 00:42:31 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Amazon ECS #Amazon GuardDuty #AWS #AWS Lambda #Cloud Security #Cryptojacking #EC2 #IAM Security #persistence #Termination Protection
Daily CyberSecurity
Locked Out of the Cloud: Hackers Use AWS Termination Protection to Hijack ECS for Unstoppable Crypto Mining
Hackers are weaponizing AWS termination protection to lock defenders out while they mine crypto on hijacked ECS/EC2 resources using a malicious Docker image.
⤷ Title: New Mirai Variant and “Monaco” Miner Targeting Linux Devices
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 20 Mar 2026 13:00:39 +0000
════════════════════════
⌗ Tags: #Malware #botnet #CondiBot #Cryptojacking #cybersecurity #ddos #Eclypsium #infosec #IoT security #Linux Malware #Monaco Cryptominer
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 20 Mar 2026 13:00:39 +0000
════════════════════════
⌗ Tags: #Malware #botnet #CondiBot #Cryptojacking #cybersecurity #ddos #Eclypsium #infosec #IoT security #Linux Malware #Monaco Cryptominer
Daily CyberSecurity
New Mirai Variant and "Monaco" Miner Targeting Linux Devices
Eclypsium uncovers two new Linux malware strains: a CondiBot DDoS variant and the Monaco SSH cryptominer targeting servers and IoT. Secure your network.
⤷ Title: Shattering the Myth of the “Serene Harbor”: Trojans and Info-Stealers Now Dominate macOS
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 09 Apr 2026 08:23:16 +0000
════════════════════════
⌗ Tags: #Malware #Apple Security #Cryptojacking #Cybersecurity 2026 #enterprise security #Information Stealer #Jamf 2026 #Mac malware #macOS Security #trojan #zero_day
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 09 Apr 2026 08:23:16 +0000
════════════════════════
⌗ Tags: #Malware #Apple Security #Cryptojacking #Cybersecurity 2026 #enterprise security #Information Stealer #Jamf 2026 #Mac malware #macOS Security #trojan #zero_day
Penetration Testing Tools
Shattering the Myth of the "Serene Harbor": Trojans and Info-Stealers Now Dominate macOS
Apple computers have long since ceased to be a “serene harbor,” a reality underscored by the latest findings
⤷ Title: The Zero-Detection Shadow: Unit 42 Exposes Advanced Gremlin Stealer Hijacking Live Browser WebSockets
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 20 May 2026 07:42:37 +0000
════════════════════════
⌗ Tags: #Malware #.NET Resource Obfuscation #Chromium Identity Theft #Code Virtualization Bytecode #Cookie Protection Bypass #Cryptojacking Clipboard Hijacker #Gremlin Stealer Malware #Unit 42 Palo Alto Networks #WebSocket Session Hijacking #XOR Encoded Payload #Zero Detection C2 Infrastructure
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 20 May 2026 07:42:37 +0000
════════════════════════
⌗ Tags: #Malware #.NET Resource Obfuscation #Chromium Identity Theft #Code Virtualization Bytecode #Cookie Protection Bypass #Cryptojacking Clipboard Hijacker #Gremlin Stealer Malware #Unit 42 Palo Alto Networks #WebSocket Session Hijacking #XOR Encoded Payload #Zero Detection C2 Infrastructure
Information Security News
The Zero-Detection Shadow: Unit 42 Exposes Advanced Gremlin Stealer Hijacking Live Browser WebSockets - Information Security News
The exfiltration of administrative credentials and volatile session tokens increasingly manifests not as a rudimentary brute-force incursion, but as a meticulously obfuscated mechanism engineered to maintain absolute silence until the definitive moment of…