Fun

News Feed - 2023-09-08 05:09:52

Ana Paula Pereira3 hours agoWindows tool targeted by hackers deploys crypto-mining malwareSoftware installers affected are mainly used for 3D modeling and graphic design, with French being the most frequent language used in the malware campaign.739 Total views9 Total sharesListen to article 0:00NewsJoin us on social networksHackers have been using a Windows tool to drop cryptocurrency-mining malware since November 2021, according to an analysis from Cisco’s Talos Intelligence. The attacker exploits Windows Advanced Installer — an application that helps developers package other software installers, such as Adobe Illustrator — to execute malicious scripts on infected machines. 


According to a Sept. 7 blog post, the software installers affected by the attack are mainly used for 3D modeling and graphic design. Additionally, most of the software installers used in the malware campaign are written in French. The findings suggest that the “victims are likely across business verticals, including architecture, engineering, construction, manufacturing, and entertainment in French language-dominant countries," explains the analysis.


The attacks predominantly affect users in France and Switzerland, with a few infections in other countries, including the United States, Canada, Algeria, Sweden, Germany, Tunisia, Madagascar, Singapore and Vietnam, the post notes based on DNS request data sent to the attacker’s command and control host.


The illicit crypto mining campaign identified by Talos involves the deployment of malicious PowerShell and Windows batch scripts to execute commands and establish a backdoor in the victim’s machine. PowerShell, specifically, is well-known for running in the memory of the system instead of the hard drive, making it harder to identify an attack.Example of a software installer packaged with malicious scripts using Advanced Installer. Source: Talos Intelligence.


Once the backdoor is installed, the attacker executes additional threats, such as the Ethereum crypto-mining program PhoenixMiner, and lolMiner, a multicoin mining threat.“These malicious scripts are executed using Advanced Installer’s Custom Action feature, which allows users to predefine custom installation tasks. The final payloads are PhoenixMiner and lolMiner, publicly available miners relying on computers’ GPU capabilities."


The use of crypto-mining malwareis known as cryptojacking, and it involves installing crypto-mining code on a device without the user’s knowledge or permission in order to illegally mine cryptocurrencies. Signs that mining malware may be running on a machine include overheating and poorly performing devices.


Using malware families to hijack devices to mine or steal cryptocurrencies isn’t a new practice. Former smartphone giant BlackBerry recently identified malware scripts actively targeting at least three sectors, including financial services, healthcare and government.


Magazine: ‘Moral responsibility’ — Can blockchain really improve trust in AI?# Mining# Business# Hackers# Cryptojacking# HacksAdd reactionAdd reactionRead moreWho invented NFTs?: A brief history of nonfungible tokensChatGPT-coded smart contracts may be flawed, could ‘fail miserably’ when attacked: CertiKCrypto VC: Risk and investment strategies with Shima Capital

News Feed

Haunted by Past Elon Musk Predictions, Gold Bug Peter Schiff Tears Into Tesla’s BTC Acquisition
Haunted by Past Elon Musk Predictions, Gold Bug Peter Schiff Tears Into Tesla"s BTC Acquisition After previously claiming that Elon Musk was too smart to buy bit
Analysts Predict Major Dogecoin Price Rally After Breaking 50-Day Trendline
Reason to trust Strict editorial policy that focuses on accuracy, relevance, and impartiality Created by industry experts and meticulously reviewed The highest standards in reporting and pu
Bitwise CIO says BTC ETFs are huge success and 13F filings make him ‘incredibly bullish’
Nancy Lubale3 hours agoBitwise CIO says BTC ETFs are huge success and 13F filings make him ‘incredibly bullish’Bitwise CIO Matt Hougan says this week"s 13F filings prove that the spot Bitcoin ETFs were a “huge succ
A Recent SEC Filing Shows the World’s Largest Asset Manager Blackrock Plans to Launch a Metaverse ETF
A Recent SEC Filing Shows the World"s Largest Asset Manager Blackrock Plans to Launch a Metaverse ETF According to a recent filing, Blackrock, the multi-national investment company
Bitcoin’s Largest Holders Are Stacking Again — What It Means For The Market
Reason to trust Strict editorial policy that focuses on accuracy, relevance, and impartiality Created by industry experts and meticulously reviewed The highest standards in reporting and pu
Standard Chartered Bank Enters the Metaverse
Standard Chartered Bank Enters the Metaverse Standard Chartered Bank has become the latest major bank to enter the metaverse. The bank has acquired “virtual land at The Sand
Rakesh Upadhyay6 hours agoPrice analysis 10/4: BTC, ETH, BNB, XRP, SOL, ADA, DOGE, TON, DOT, MATICBitcoin is consolidating at the top of its range and this is inspiring traders" confidence in a variety of altcoins.1855 T
BIS Releases Report On ‘Project Icebreaker’ — Develops Cross-Border Retail CBDC Payment Model
BIS Releases Report On ‘Project Icebreaker’ — Develops Cross-Border Retail CBDC Payment Model The Bank for International Settlements (BIS) has released a report summarizing t
Australia’s main stock exchange to get second spot Bitcoin ETF
Brayden Lindrea3 hours agoAustralia’s main stock exchange to get second spot Bitcoin ETFThe DigitalX Bitcoin ETF will be listed under the ticker BTXX on July 12, becoming the second spot Bitcoin ETF to be approved on t
Biggest Movers: XRP Remains Close to 4-Month High, as LTC Rebounds on Wednesday
Biggest Movers: XRP Remains Close to 4-Month High, as LTC Rebounds on Wednesday XRP remained close to a four-month high on Wednesday, following a recent breakout of a key resistanc
Chainlink Token Down 60% in Under 40 Days: Opponents Ask If the Bubble Has Finally Burst?
Chainlink Token Down 60% in Under 40 Days: Opponents Ask If the Bubble Has Finally Burst?After reaching an all-time high of $19.20 on August 14, the Chainlink token now trades lower
NYT AI lawsuit gets weird as OpenAI demands sources for every article
Tristan Greene3 hours agoNYT AI lawsuit gets weird as OpenAI demands sources for every articleIt’s unclear whether the judge in the case is considering the request, but the New York Times had a strong response to the r