Fun

Kubernetes Clusters Used to Mine Monero by Attackers

News Feed - 2021-07-26 06:07:41

Kubernetes Clusters Used to Mine Monero by Attackers


Attackers are abusing an attack vector present in one of the most popular execution engines (Argo Workflows) to repurpose Kubernetes systems to mine cryptocurrencies. The attack exploits a vulnerability in the system of permissions of Argo Workflows machines connected to the internet, deploying malicious workflows that install Monero-based containers. Attackers Leveraging Argo Workflows for Crypto Mining


A group of attackers discovered a new attack vector that uses a vulnerability in the permission system of Argo Workflows, one of the most used execution engines for Kubernetes, to install cryptocurrency mining modules in machines connected to the internet. This vulnerability means that every instance of Kubernetes, one of the most used cloud computing systems, could be used to mine Monero if it is paired with Argo Workflows.


A report from Intezer, a cybersecurity firm, informs they have already identified infected nodes and others vulnerable to this attack. The unprotected nodes allow any user to ping them and insert their own workflows into the system. This means anyone can use the resources in a vulnerable system and direct them to any task.


Luckily for attackers, there are several Monero-based cryptocurrency mining containers that can be leveraged easily to start mining Monero using these Kubernetes machines. Most of them are derived from kannix/monero-miner, but there are more than 45 other containers available to use. This is why security experts are anticipating large-scale attacks involving this vulnerability. Cloud Computing Vulnerability


This is just one of the recent attack vectors compromising cloud computing platforms and being used to enable cryptocurrency mining. Just last month, Microsoft informed of a similar attack that also targeted Kubernetes clusters with Kubeflow machine learning (ML) instances. Attackers use the vulnerable nodes to mine monero and also ethereum using Ethminer.


Attacks to this kind of platform started gaining traction back in April 2020, when Microsoft reported an instance that caused tens of thousands of infections in just two hours. These attacks have also prompted companies to switch their policies to avoid abuse. This is the case of Docker, which had to put limits to the free tier of its product because attackers were using its autobuild function to deploy cryptocurrency miners in its free servers.


What do you think about these attacks targeting Kubernetes nodes? Tell us in the comments section below. Thorchain Trolled by Hacker After Two Successful Seven-Figure Exploits NEWS | 1 hour ago Tesla Q2-2021 Earnings Call to Shed Light on Its Bitcoin Holdings NEWS | 17 hours ago Tags in this story argo workflows, attackers, Cloud Computing, cryptocurrency mining, docker, kubernetes, Monero


Image Credits: Shutterstock, Pixabay, Wiki Commons Disclaimer: This article is for informational purposes only. It is not a direct offer or solicitation of an offer to buy or sell, or a recommendation or endorsement of any products, services, or companies. Bitcoin.com does not provide investment, tax, legal, or accounting advice. Neither the company nor the author is responsible, directly or indirectly, for any damage or loss caused or alleged to be caused by or in connection with the use of or reliance on any content, goods or services mentioned in this article. Read disclaimerShow comments

News Feed

Shiba Inu Sees $120 Million Weekly Surge—Whales Tighten Their Grip
Reason to trust Strict editorial policy that focuses on accuracy, relevance, and impartiality Created by industry experts and meticulously reviewed The highest standards in reporting and pu
The Three Kingdoms: The New Era of Play-to-Earn Games
The Three Kingdoms: The New Era of Play-to-Earn Games sponsored CryptoKitties was the first to bring blockchain gaming to life, and games such as Axie Infinity defined how a good bl
WAX Builds the Largest Cross-Blockchain Ecosystem for NFTS, Gaming, and GameFi With Binance
WAX Builds the Largest Cross-Blockchain Ecosystem for NFTS, Gaming, and GameFi With Binance sponsored “Blockchain Brawlers” NFT Collection Launches Later this Month
Rapper 50 Cent claims X account was hacked to promote celeb memecoin
Ciaran Lyons1 hour agoRapper 50 Cent claims X account was hacked to promote celeb memecoinRapper 50 Cent informed his 32.8 million Instagram followers that hackers used his X account to carry-out a multimillion-dollar me
African Fintech Giant Raises $150 Million in Funding Round Led by FTX, Firm Now Valued at Over $2 Billion
African Fintech Giant Raises $150 Million in Funding Round Led by FTX, Firm Now Valued at Over $2 Billion Chipper Cash, one of Africa’s biggest fintechs, recently concluded
Tom Blackstone11 hours agoWormhole integrates native USDC transfers for four blockchain networksWormhole integrated with Circle’s Cross-Chain Transfer Protocol, allowing USDC to be sent between Ethereum, Avalanche, Arb
Biggest Movers: SHIB, DOT Nearly 30% Higher, as SOL Also Surges
Biggest Movers: SHIB, DOT Nearly 30% Higher, as SOL Also Surges Cryptocurrency markets were mostly in the green on Friday, as DOT was up by nearly 40%, moving away from an 18-month
Bitcoin, Ethereum Technical Analysis: ETH Back Above $1,200 as Bank of Japan Policy Decision Impacts Markets
Bitcoin, Ethereum Technical Analysis: ETH Back Above $1,200 as Bank of Japan Policy Decision Impacts Markets Ethereum rose back above the $1,200 level on Tuesday, as the dollar reb
NFT Sales Drop 5.4% to $193M, Ethereum Dominates with $107M in Sales: Weekly Recap
NFT Sales Drop 5.4% to $193M, Ethereum Dominates with $107M in Sales: Weekly Recap Over the past week, statistics show non-fungible token (NFT) sales totaled $193.08 million, down
Bulgarian Stock Exchange Launches 8 Crypto ETNs
Bulgarian Stock Exchange Launches 8 Crypto ETNs Bulgarians can now invest in crypto assets through their country’s stock market. The Bulgarian Stock Exchange has recently la
Spot Ethereum ETFs flip positive after $34M inflow on July 30
Martin Young4 hours agoSpot Ethereum ETFs flip positive after $34M inflow on July 30Daily flow into Ether ETFs has turned up positive for the first time since launch day, reversing a trend of outflows that saw $547 milli
SEC, DOJ Investigate FTX — Regulators Suspect Crypto Exchange Mishandles Customer Funds
SEC, DOJ Investigate FTX — Regulators Suspect Crypto Exchange Mishandles Customer Funds The U.S. Securities and Exchange Commission (SEC) and the Department of Justice (DOJ) are