• Home
  • Cryptocurrency
    • Bitcoin
    • Ethereum
    • XRP
    • Litecoin
    • Altcoin
    • Cardano
    • Tether
    • DOGE
    • Solano
    • XLM
    • DOT
    • XDC
    • SHIBA
    • BNB
  • Blockchain
  • Regulation
  • Market
  • Live
    • Prices
    • ICO
  • Meta
    • NFT
  • Technical Analysis
    • XRP
    • BTC
    • XLM
    • ADA
    • TETHER
    • ETC
    • ETH
    • DOGE
    • LTC
  • Exchange
  • Mining
Wednesday, May 18, 2022
  • Login
  • Register
Coin24h.com
  • Home
  • Cryptocurrency
    • Bitcoin
    • Ethereum
    • XRP
    • Litecoin
    • Altcoin
    • Cardano
    • Tether
    • DOGE
    • Solano
    • XLM
    • DOT
    • XDC
    • SHIBA
    • BNB
  • Blockchain
  • Regulation
  • Market
  • Live
    • Prices
    • ICO
  • Meta
    • NFT
  • Technical Analysis
    • XRP
    • BTC
    • XLM
    • ADA
    • TETHER
    • ETC
    • ETH
    • DOGE
    • LTC
  • Exchange
  • Mining
  • en English
    ar Arabiczh-CN Chinese (Simplified)nl Dutchen Englishfr Frenchde Germanit Italianpt Portugueseru Russianes Spanish
No Result
View All Result
  • Home
  • Cryptocurrency
    • Bitcoin
    • Ethereum
    • XRP
    • Litecoin
    • Altcoin
    • Cardano
    • Tether
    • DOGE
    • Solano
    • XLM
    • DOT
    • XDC
    • SHIBA
    • BNB
  • Blockchain
  • Regulation
  • Market
  • Live
    • Prices
    • ICO
  • Meta
    • NFT
  • Technical Analysis
    • XRP
    • BTC
    • XLM
    • ADA
    • TETHER
    • ETC
    • ETH
    • DOGE
    • LTC
  • Exchange
  • Mining
  • en English
    ar Arabiczh-CN Chinese (Simplified)nl Dutchen Englishfr Frenchde Germanit Italianpt Portugueseru Russianes Spanish
No Result
View All Result
Coin24h.com
No Result
View All Result
Ledger Nano X - The secure hardware wallet
ADVERTISEMENT

An AWS Virtual Machine Is Infected With Mining Malware. There Could Be Others

21 August 2020
in Blockchain
Reading Time: 6 mins read
A A
0
An AWS Virtual Machine Is Infected With Mining Malware. There Could Be Others
189
SHARES
1.5k
VIEWS
Share on FacebookShare on Twitter
cryptotrader
ADVERTISEMENT


A cybersecurity firm has unearthed a monero mining script embedded in a public instance of an Amazon Web Service (AWS) virtual machine. Now the firm is raising the question: How many other community Amazon Machine Instances (AMIs) are infected with the same malware?

Researchers at Mitiga revealed in a blog post today that an AWS AMI for a Windows 2008 virtual server hosted by an unverified vendor is infected with a Monero mining script. The malware would have infected any device running the AMI with the purpose of using the device’s processing power to mine the privacy coin monero in the background — a malware attack that has become all too common in crypto’s digital wild west.

“Mitiga’s security research team has identified an AWS Community AMI containing malicious code running an unidentified crypto (Monero) miner. We have concerns this may be a phenomenon, rather than an isolated occurrence,” the blog post reads.

Monero meets AMI

Businesses and other entities use Amazon Web Services to spin up what are called “EC2” instances of popular programs and services. Also known as virtual machines, these EC2s require an Amazon Machine Instance to function, and businesses leverage these services to lower the costs of compute power for their business operations. AWS users can source these services from Amazon Marketplace AMIs, which are Amazon-verified vendors, or Community AMIs, which are unverified. 

Read more: BlackBerry and Intel Tackle Cryptojacking Malware With New Detection Tool

Mitiga discovered this monero script in a Community AMI for a Windows 2008 Server while conducting a security audit for a financial services company. In its analysis, Mititga concluded that the AMI was created with the sole purpose of infecting devices with the mining malware, as the script was included in the AMI’s code from day one.

Code for the monero mining script
Source: Mitiga

Outside of the financial services company that hired Mitiga to review the AMI, the cybersecurity firm is unaware of how many other entities and devices may be infected with the malware. 

“As to how Amazon allows this to happen, well, this is the biggest question that arises from this discovery, but it’s a question that should also be directed to AWS’s Comms team,” the team told CoinDesk over email.

CoinDesk reached out to Amazon Web Services to learn more about its approach to handling unverified AMI publishers but a representative declined to comment. Amazon Web Service’s documentation includes the caveat that users choose to use Community AMIs “at [their] own risk” and that Amazon “can’t vouch for the integrity or security of [these] AMIs.”

mitiga-community-ami-2
The AWS page containing the Community AMI that is infected with the malware
Source: Mitiga

One-off event or one of many?

Mitiga’s principal concern is that this malware could be one of several bugs worming around in unverified AMIs. The fact that Amazon does not provide transparent data regarding AWS use exacerbates this worry, the firm told CoinDesk.

“As AWS customer usage is obfuscated, we can’t know how far and wide this phenomenon stretches without AWS’s own investigation. We do however believe that the potential risk is high enough to issue a security advisory to all AWS customers using Community AMIs.”

Read more: North Korea Is Expanding Its Monero Mining Operations, Says Report 

Mitiga recommends that any entity running a community AMI should terminate it immediately and search for a replacement from a trusted vendor. At the very least, businesses which rely on AWS should painstakingly review the code before integrating unverified AMIs into their business logic. 

Mining malware could actually be the most innocuous form of infection a business may experience, the firm continued in the post. The worst case scenario includes an AMI installing a backdoor on a business’ computer or ransomware which would encrypt the company’s files with the aim of extorting them for money to regain access.

The attack is the latest in a trend of so-called “crypto-jacking” attacks. Monero is the coin-of-choice among attackers thanks to its mining algorithm, which can be run easily using a computer’s CPU and GPU. When attackers infect enough computers and pool their resources, the collective hashpower is enough to merit a pretty payday.

If Mitiga’s fears are true, other AMIs may have infected user devices with monero mining scripts and gone unnoticed.

Disclosure

The leader in blockchain news, CoinDesk is a media outlet that strives for the highest journalistic standards and abides by a strict set of editorial policies. CoinDesk is an independent operating subsidiary of Digital Currency Group, which invests in cryptocurrencies and blockchain startups.



Source link

Related articles

Bitcoin, Major Cryptos Slide as Markets Digest Hawkish Powell Remarks

18 May 2022

Market Wrap: Cryptos and Stocks Mixed Amid Bearish Sentiment

17 May 2022
Cryptohopper
ADVERTISEMENT
[crypto-donation-box]
Tags: AWSInfectedMachineMalwareMiningVirtual
Share76Tweet47
Ledger Nano X - The secure hardware wallet
Previous Post

Bitcoin Options Open Interest Nears All Time High – But Rise in Puts Could Presage Drop

Next Post

What’s driving the S&P 500, NIO and XRP?

Related Posts

Bitcoin, Major Cryptos Slide as Markets Digest Hawkish Powell Remarks

18 May 2022
0

While such scenarios take months to play out, traders price in changes anticipating lower earnings, which leads to a drop...

Market Wrap: Cryptos and Stocks Mixed Amid Bearish Sentiment

17 May 2022
0

Bitcoin (BTC) is stabilizing around $30K while stock market volatility is fading. Altcoins were mixed, although recent underperformance could signal...

Argentina presiona a mineros de criptomonedas en medio de una escasez energética

17 May 2022
0

BitPatagonia, una de las compañías registradas de minería de cripto más grande de Argentina, recibió recientemente un aumento de 400%...

Elwood Technologies Touts Strong Focus on Crypto Derivatives

17 May 2022
0

“There’s a huge focus on derivatives,” said Elwood CEO James Stickland in an interview. “It’s a great way for tier...

What Web 3 Means to Andreessen Horowitz

17 May 2022
0

What Web 3 Means to Andreessen Horowitz Source link

Load More
Next Post
What’s driving the S&P 500, NIO and XRP?

What’s driving the S&P 500, NIO and XRP?

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

  • Trending
  • Comments
  • Latest
7 Cryptos to Watch as the Sector Battles at Key Support Levels

ISO 20022 Cryptos: 5 Compliant Cryptos to Keep an Eye on in 2022

22 December 2021
What happened to the stock market today?

What happened to the stock market today?

28 September 2021
Dogecoin price enters buy zone before breaking out to $0.28

Dogecoin liquidity deepens as DOGE goes live on Thorchain

18 January 2022
All Legendary Weapons in Ruined King

All Legendary Weapons in Ruined King

4 December 2021
XRP | Digital Asset for Real-Time Global Payments |

SEC v. Ripple: Judge may be “digging the fair notice defense”, said expert

4543
Bitwise Asset Management | Cryptocurrency

Bitwise’s Crypto Index Fund Becomes Available To U.S. Investors

75
Crypto Currency | Binance | Crypto Exchange

Hours Before S. Korean Registration Deadline, Only 10 Exchanges Have Submitted Applications

69
Allianz Chief Economist Who Bought 2018 Bottom: I Sold My Bitcoin Today

Allianz Chief Economist Who Bought 2018 Bottom: I Sold My Bitcoin Today

46

Blockchain Gaming Developer N3TWORK Studios Closes $46M Funding Led by Griffin Gaming

18 May 2022

Ethereum, Bitcoin and Solana – European Wrap 18 May

18 May 2022

Bitcoin, Major Cryptos Slide as Markets Digest Hawkish Powell Remarks

18 May 2022

Neutral-Rated Wrapped BNB (WBNB) Falls Wednesday to $302.15

18 May 2022

We publish a comprehensive news feed covering all news relevant to the crypto user, covering main industry news, politics and regulation as well as consumer-level “news you can use” (practical stuff), including handy DIY tips, links to useful tools, unbiased reviews and opinions revolving around cryptocurrency. Simple logic and real-world examples are preferred before technical jargon and personal rants.

Categories

  • Altcoin
  • Bitcoin
  • Blockchain
  • BNB
  • Cardano
  • Cryptocurrency
  • DOGE
  • DOT
  • Ethereum
  • Litecoin
  • Market
  • Meta News
  • Mining
  • NFT
  • Regulation
  • SHIBA
  • Solano
  • Tether
  • Uncategorized
  • XDC
  • XLM
  • XRP

What’s New Here!

  • Blockchain Gaming Developer N3TWORK Studios Closes $46M Funding Led by Griffin Gaming
  • Ethereum, Bitcoin and Solana – European Wrap 18 May
  • Bitcoin, Major Cryptos Slide as Markets Digest Hawkish Powell Remarks

Newsletter

  • About Us
  • Privacy Policy
  • Contact Us

© 2022 coin24h.com

No Result
View All Result
  • Home
  • Cryptocurrency
    • Bitcoin
    • Ethereum
    • XRP
    • Litecoin
    • Altcoin
    • Cardano
    • Tether
    • DOGE
    • Solano
    • XLM
    • DOT
    • XDC
    • SHIBA
    • BNB
  • Blockchain
  • Regulation
  • Market
  • Live
    • Prices
    • ICO
  • Meta
    • NFT
  • Technical Analysis
    • XRP
    • BTC
    • XLM
    • ADA
    • TETHER
    • ETC
    • ETH
    • DOGE
    • LTC
  • Exchange
  • Mining

© 2020 coin24h.com

Welcome Back!

Login to your account below

Forgotten Password? Sign Up

Create New Account!

Fill the forms below to register

All fields are required. Log In

Retrieve your password

Please enter your username or email address to reset your password.

Log In
  • bitcoinBitcoin(BTC)$45,716.00-1.31%
  • ethereumEthereum(ETH)$3,456.77-0.85%
  • tetherTether(USDT)$1.000.04%
  • binancecoinBNB(BNB)$439.95-1.61%
  • usd-coinUSD Coin(USDC)$1.00-0.21%
  • SolanaSolana(SOL)$128.84-4.73%
  • rippleXRP(XRP)$0.82-1.94%
  • TerraTerra(LUNA)$111.19-1.25%
  • cardanoCardano(ADA)$1.190.55%
  • AvalancheAvalanche(AVAX)$92.73-3.81%
  • polkadotPolkadot(DOT)$22.10-4.14%
  • dogecoinDogecoin(DOGE)$0.144901-0.44%
  • Binance USDBinance USD(BUSD)$1.000.03%
  • TerraUSDTerraUSD(UST)$1.00-0.03%
  • Shiba InuShiba Inu(SHIB)$0.000026-1.07%
  • wrapped-bitcoinWrapped Bitcoin(WBTC)$45,705.00-1.34%
  • CronosCronos(CRO)$0.473031-1.56%
  • matic-networkPolygon(MATIC)$1.63-2.68%
  • Lido Staked EtherLido Staked Ether(STETH)$3,455.57-0.80%
  • NEAR ProtocolNEAR Protocol(NEAR)$15.62-3.50%
  • daiDai(DAI)$1.00-0.09%
  • cosmosCosmos Hub(ATOM)$30.76-3.98%
  • litecoinLitecoin(LTC)$123.39-2.73%
  • chainlinkChainlink(LINK)$17.14-5.68%
  • tronTRON(TRX)$0.069912-3.60%
  • bitcoin-cashBitcoin Cash(BCH)$370.86-0.90%
  • FTX TokenFTX Token(FTT)$49.41-1.74%
  • ethereum-classicEthereum Classic(ETC)$45.69-1.36%
  • Power CashPower Cash(PRCH)$0.017570881.24%
  • algorandAlgorand(ALGO)$0.88-4.27%
  • stellarStellar(XLM)$0.231372-0.55%
  • leo-tokenLEO Token(LEO)$5.95-0.02%
  • OKBOKB(OKB)$20.68-0.82%
  • UniswapUniswap(UNI)$11.31-3.17%
  • vechainVeChain(VET)$0.076890-1.96%
  • Axie InfinityAxie Infinity(AXS)$63.07-4.37%
  • HederaHedera(HBAR)$0.235142-4.16%
  • Internet ComputerInternet Computer(ICP)$21.47-0.24%
  • filecoinFilecoin(FIL)$24.44-2.18%
  • ElrondElrond(EGLD)$189.04-2.56%
  • decentralandDecentraland(MANA)$2.61-2.92%
  • The SandboxThe Sandbox(SAND)$3.40-2.47%
  • FantomFantom(FTM)$1.52-3.28%
  • moneroMonero(XMR)$214.53-0.30%
  • wavesWaves(WAVES)$37.59-24.48%
  • theta-tokenTheta Network(THETA)$3.76-6.47%
  • cETHcETH(CETH)$69.26-1.11%
  • tezosTezos(XTZ)$3.80-4.12%
  • ApeCoinApeCoin(APE)$11.60-3.99%
  • The GraphThe Graph(GRT)$0.480061-4.90%