Entradas

Mostrando las entradas etiquetadas como Malware

Researchers Say 50,000 Servers Worldwide Infected With Privacy Coin Cryptojacking Malware

Imagen
By  Marie Huillet As many as 50,000 servers worldwide have allegedly been infected with an advanced  cryptojacking  malware that mines the privacy-focused open source cryptocurrency turtlecoin (TRTL). The news was  revealed  in an analysis by international hacker and cybersecurity expert group Guardicore Labs on May 29. As reported, cryptojacking is an industry term for stealth crypto mining attacks which work by installing malware that uses a computer’s processing power to  mine  for cryptocurrencies without the owner’s consent or knowledge. Having first detected the campaign in April and traced its origins and progress, Guardicore Labs believes the malware has infected up to 50,000 Windows MS-SQL and PHPMyAdmin servers over the past four months worldwide. The analysts backdated attacks to late February, noting the campaign’s precipitous expansion at a rate of over “seven hundred new victims per day.” Between April 13 and May 13, t...

Crypto Wallet Startup Ledger Detects Phishing Malware Targeting Desktop App

Imagen
  By Ana Alexandre Hardware cryptocurrency wallet manufacturer Ledger has detected malware targeting its desktop application, according to a tweet on April 25. Ledger warned its users that the malware locally replaces the Ledger Live desktop app with a malicious one, and advised to follow security practices published on its blog. The company’s Twitter announcement specifically reads: “WARNING: we’ve detected a malware that locally replaces the Ledger Live desktop application by a malicious one. Users of infected computers are asked to enter their 24-word recovery phrase after a fake update.” In the comments to the post, Ledger revealed that the malware is infecting only Windows machines, although the company has reportedly detected only one affected device. Ledger further noted that the malware cannot compromise users’ computers or digital currency, but only represents a phishing attack in a bid to lure users to enter their 24-words recovery phr...