Welcome to our

Cyber Security News Aggregator

.

Cyber Tzar

provide a

cyber security risk management

platform; including automated penetration tests and risk assesments culminating in a "cyber risk score" out of 1,000, just like a credit score.

Example of how attackers are trying to push crypto miners via Log4Shell, (Fri, Dec 24th)

published on 2021-12-24 13:11:20 UTC by
Content:
While following Log4Shell's exploit attempts hitting our honeypots, I came across another campaign trying to push a crypto miner on the victim’s machines. The previous campaign I analyzed used a simple post-exploitation Powershell script to download and launch the coin miner xmrig. The new one uses a .Net launcher to download, decrypt, and execute the binaries.
Article: Example of how attackers are trying to push crypto miners via Log4Shell, (Fri, Dec 24th) - published almost 3 years ago.

https://isc.sans.edu/diary/rss/28172   
Published: 2021 12 24 13:11:20
Received: 2021 12 24 14:20:39
Feed: SANS Internet Storm Center, InfoCON: green
Source: SANS Internet Storm Center, InfoCON: green
Category: Alerts
Topic: Vulnerabilities
Views: 1

Custom HTML Block

Click to Open Code Editor